AZURE / Network Security Groups / Network Watcher Enabled

October 27, 2022 ยท View on GitHub

CloudSploit

AZURE / Network Security Groups / Network Watcher Enabled

Quick Info

Plugin TitleNetwork Watcher Enabled
CloudAZURE
CategoryNetwork Security Groups
DescriptionEnsures Network Watcher is enabled in all locations
More InfoNetwork Watcher helps locate, diagnose, and gain insights into Azure networks. Enabling Network Watcher in all locations ensures that no resources are being used in locations that are not authorized.
AZURE Linkhttps://docs.microsoft.com/en-us/azure/network-watcher/network-watcher-monitoring-overview
Recommended ActionEnable the Network Watcher service in all locations.

Detailed Remediation Steps

  1. Log into the Microsoft Azure Management Console.
  2. Select the "Search resources, services, and docs" option at the top and search for Network Watcher.
  3. On the "Network Watcher" page, click on the Overview tab and check the status of the "Network Watcher."
  4. On the "Overveiw" tab if you do not see any Network watcher listed then you do not have any Network Watcher enabled.
  5. Repeat step number 2 - 4 to check the status of Network Watcher in other Azure accounts.
  6. Navigate to "Network Watcher" and click on the Overview page. Click on the "Add" button at the top to create a Network watcher.
  7. On the "Add network watcher" pane that opens on the right, choose the "Subscription" and then click on "Select All" to select all locations under "Region".
  8. Click "Add" button at the bottom of the screen to create your Network watcher.
  9. Now we have a Network Watcher service Enabled for all locations.