Skip to content

Azure SQL Database must generate audit records when successful logons or connections occur.

An XCCDF Rule

Description

For completeness of forensic analysis, it is necessary to track who/what (a user or other principal) logs on to Azure SQL Database.

ID
SV-255368r961824_rule
Version
ASQL-00-014700
Severity
Medium
References
Updated

Remediation Templates

A Manual Procedure

Deploy an Azure SQL Database audit.

Refer to the supplemental file "AzureSQLDatabaseAudit.txt" PowerShell script.

Reference: 
https://docs.microsoft.com/en-us/powershell/module/az.sql/set-azsqlserveraudit">https://docs.microsoft.com/en-us/powershell/module/az.sql/set-azsqlserveraudit