Forum Discussion
Jeff Walzer
Oct 20, 2021Iron Contributor
How to block IPs trying to hit Key Vaults?
I have an alert - Mass secret retrieval from Azure Key Vault - for an external IP that is trying to access out key vaults over and over. When I check the Azure Key Vault Security workbook and look un...
- Oct 21, 2021Have you enabled firewall for key vault it's not enabled by default
Ref the below article https://docs.microsoft.com/en-us/azure/key-vault/general/network-security
Chandrasekhar_Arya
Oct 21, 2021Steel Contributor
Have you enabled firewall for key vault it's not enabled by default
Ref the below article https://docs.microsoft.com/en-us/azure/key-vault/general/network-security
Ref the below article https://docs.microsoft.com/en-us/azure/key-vault/general/network-security
- Jeff WalzerOct 21, 2021Iron Contributor
Chandrasekhar_Arya - Thx again for the reply and info as I needed to allow access only from selected networks
- Jeff WalzerJan 21, 2022Iron ContributorChandrasekhar_Arya - what if I have a key vault that is part of a resource group that has no VNET defined (just an RG with app services) so I can't select the 'Selected networks' option under the Firewalls and virtual networks blade to choose it's local VNET/subnet?
What network should I look to select for a scenario like this?
Thx