TF 0345 - SymbioticSec/Symbiotic-Vulnerability-Database GitHub Wiki

Ensure AKS logging to Azure Monitoring is Configured

Property Value
Language terraform
Severity medium
Service container
Provider Azure
Vulnerability Type omission

Description

AKS clusters are not configured to send logs to Azure Monitoring, resulting in a lack of visibility into container activity and workload performance. Without logging, critical operational and security events may go undetected.

Impact

Failure to enable logging can lead to undetected security incidents, difficulty in troubleshooting, and non-compliance with monitoring requirements. Attackers or misconfigurations may persist unnoticed, increasing operational and security risks.

Resolution

Enable logging for AKS