Skip to content

Azure Event Grid domain public network access is enabled

Description

By ensuring that your Azure Event Grid domain is not public, you can help protect your data from unauthorized access or tampering. Public Azure Event Grid domains are accessible over the internet, which can make them vulnerable to external threats such as hackers or malware. By making it private, you can help ensure that only authorized users can access the data.

Code Example

go
resource "azurerm_eventgrid_domain" "example" {
              ...
+             public_network_access_enabled = false
              }

Remediation

Terraform

  • Resource: azurerm_eventgrid_domain
  • Arguments: public_network_access_enabled

Rule Details

FieldValue
IDIAC-0613
SeverityMEDIUM
IaC TypeTerraform
FrameworksTerraform,
Checkov IDCKV_AZURE_106

References