Azure SQL Database must generate audit records when successful logons or connections occur.
An XCCDF Rule
Description
For completeness of forensic analysis, it is necessary to track who/what (a user or other principal) logs on to Azure SQL Database.
- ID
- SV-255368r961824_rule
- Version
- ASQL-00-014700
- Severity
- Medium
- References
- Updated
Remediation Templates
A Manual Procedure
Deploy an Azure SQL Database audit.
Refer to the supplemental file "AzureSQLDatabaseAudit.txt" PowerShell script.
Reference:
https://docs.microsoft.com/en-us/powershell/module/az.sql/set-azsqlserveraudit">https://docs.microsoft.com/en-us/powershell/module/az.sql/set-azsqlserveraudit