Skip to content

Azure Container registries Public access to All networks is enabled

Description

Disabling public network access improves security for your Azure Container Registry (ACRs).

Code Example

go
resource "azurerm_container_registry" "ckv_unittest_pass" {
  name                          = "containerRegistry1"
  resource_group_name           = azurerm_resource_group.rg.name
  location                      = azurerm_resource_group.rg.location
  public_network_access_enabled = false
}

Remediation

Terraform

  • Resource: azurerm_container_registry
  • Arguments: public_network_access_enabled

Rule Details

FieldValue
IDIAC-0646
SeverityMEDIUM
IaC Typearm
FrameworksTerraform
Checkov IDCKV_AZURE_139

References