Skip to content

Azure Data Explorer cluster double encryption is disabled

Description

Enabling double encryption helps protect and safeguard your data to meet your organizational security and compliance commitments. When double encryption has been enabled, data in the storage account is encrypted twice, once at the service level and once at the infrastructure level, using two different encryption algorithms and two different keys.

Code Example

go
resource "azurerm_kusto_cluster" "example" {
  ...
+ double_encryption_enabled = true
}

Remediation

Terraform

  • Resource: azurerm_kusto_cluster
  • Arguments: double_encryption_enabled

Rule Details

FieldValue
IDIAC-0583
SeverityINFO
IaC Typearm
FrameworksTerraform, TerraformPlan
Checkov IDCKV_AZURE_75

References