Azure Monitor

CDN No Diagnostic Settings

Risk Level: Low

Description: 

This plugin guarantees that CDN Profiles have diagnostic settings. Diagnostics logs enable you to export basic use metrics from your CDN endpoint to a variety of sources, allowing you to consume them in a customizable manner.

PingSafe strongly recommends ensuring that diagnostic logging is enabled for each CDN profile.

About the Service :

Azure Monitor can help you improve the availability and performance of your apps and services. It provides a complete solution for gathering, evaluating, and responding to telemetry from the cloud and on-premises settings. This data enables you to better understand how your apps are doing and to detect concerns that may harm them or the resources they rely on in the future.

Impact : 

Diagnostics logs enable you to export basic use metrics from your CDN endpoint to a variety of sources, allowing you to consume them in a customizable manner. With CDN Profile Log Analytics, we can export many sorts of data.

Steps to reproduce :

  1. Sign in to your Azure portal with your Azure account.
    https://portal.azure.com/#home 
  2. Navigate to Azure’s CDN.
  3. Next, move to Diagnostics Settings under Monitoring.
  4. Check if the diagnostic settings for CDN are enabled or not.
  5. Follow the same steps for other security groups as well.

Steps for Remediation :

  1. Sign in to your Azure portal with your Azure account.
    https://portal.azure.com/#home 
  2. Navigate to Azure’s CDN.
  3. Next, move to Diagnostics Settings under Monitoring.
  4. Check if the diagnostic settings for CDN are enabled or not.
  5. If no diagnostic settings are present click on Add diagnostic settings and then add the diagnostic name and fill the required fields.
  6. Click on Save.
  7. Follow the same steps for other security groups as well.

References :

Please feel free to reach out to support@pingsafe.ai with any questions that you may have.

Thanks

PingSafe Support