More Info:

Ensure that your Microsoft Azure PostgreSQL database servers have geo-redundant backups enabled, to allow you to restore your PostgreSQL servers to a different Azure region in the event of a regional outage or a disaster.

Risk Level

High

Address

Security

Compliance Standards

HITRUST, SOC2, NISTCSF

Triage and Remediation

Remediation

To remediate the misconfiguration of not having Geo-Redundant Backups enabled in Azure, follow these step-by-step instructions:

  1. Log in to the Azure portal at https://portal.azure.com/.
  2. Navigate to the resource group that contains the storage account you want to remediate.
  3. Select the storage account from the list of resources.
  4. In the left-hand menu, click on “Backup”.
  5. In the “Backup” menu, click on “Backup policy”.
  6. Click on “Edit”.
  7. In the “Policy details” section, select “Geo-redundant” from the “Replication” drop-down menu.
  8. Click on “Save”.

After completing these steps, Geo-Redundant Backups will be enabled for the selected storage account. It is recommended to regularly review and update backup policies to ensure that they align with your business continuity and disaster recovery requirements.