An Azure service that is used to monitor, diagnose, and gain insights into network performance and health.
Guidance needed to comply with Defender network security group flow log policy.
Ashutosh Jadhav
5
Reputation points
I am working on implementing the Azure Defender compliance policy: “Flow logs should be configured for every network security group.”
This policy requires enabling flow logs for all Network Security Groups (NSGs). However, I am facing an issue where the option to select Flow log type: Network security group is disabled by default, as indicated by the notification provided in the Azure portal.
How can I achieve compliance with this policy? We need to meet this requirement as part of our Azure SOC 2 2023 compliance efforts.
Thanks,
Ashutosh
Azure Network Watcher
Azure Network Watcher
Sign in to answer