6.2 Ensure that SSH access is restricted from the internet

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Disable SSH access on network security groups from the Internet.

Rationale:

The potential security problem with using SSH over the Internet is that attackers can use various brute force techniques to gain access to Azure Virtual Machines. Once the attackers gain access, they can use a virtual machine as a launch point for compromising other machines on the Azure Virtual Network or even attack networked devices outside of Azure.

Solution

Disable direct SSH access to your Azure Virtual Machines from the Internet. After direct SSH access from the Internet is disabled, you have other options you can use to access these virtual machines for remote management:

Point-to-site VPN

Site-to-site VPN

ExpressRoute

Default Value:

By default, SSH access from internet is not enabled.

See Also

https://workbench.cisecurity.org/files/3459