Skip to main content

Prowler (delta) 5.13.0

Test results for this specific product, vendor, and version combination

VendorProwler
ProductProwler (delta)
Version5.13.0

Download Raw Results

Download the original OCSF or HTML result files used to generate this page

File NameFormatAction
azure-virtualnetwork-delta
OCSF

Test Summary

Aggregate summary of all tests for this configuration result

Resources In Configuration1
Count of Tests2
Passing Tests0
Failing Tests2
Catalogs Tested

Test Mapping Summary

Summary of test mappings showing how event codes map to test requirements

Control CatalogTest RequirementMapped Tests (Event Code | Total | Passing | Failing)
CCC.Core
CCC.Core.CN04.AR01
When administrative access or configuration change is attempted on the service or a child resource, the service MUST log the client identity, time, and result of the attempt.
network_flow_log_captured_sent
101
CCC.Core
CCC.Core.CN04.AR02
When any attempt is made to modify data on the service or a child resource, the service MUST log the client identity, time, and result of the attempt.
network_flow_log_captured_sent
101
CCC.Core
CCC.Core.CN04.AR03
When any attempt is made to read data on the service or a child resource, the service MUST log the client identity, time, and result of the attempt.
network_flow_log_captured_sent
101
CCC.Core
CCC.Core.CN09.AR01
When the service is operational, its logs and any child resource logs MUST NOT be accessible from the resource they record access to.
network_flow_log_captured_sent
101
CCC.Core
CCC.Core.CN09.AR03
When the service is operational, any attempt to redirect logs for the service or its child resources MUST NOT be possible without halting operation of the corresponding resource and publishing corresponding events to monitored channels.
network_flow_log_captured_sent
101
CCC.LB
CCC.LB.CN01.AR02
When throttling is invoked, the load balancer MUST record the event in the access log within 5 minutes for alerting and trend analysis.
network_flow_log_captured_sent
101
CCC.LB
CCC.LB.CN06.AR01
When more than 10 percent of targets change from healthy to unhealthy within five minutes, an alert MUST be issued.
network_flow_log_captured_sent
101
CCC.Logging
CCC.Logging.CN01.AR01
When a new cloud account is created, provider-level audit and network flow logging MUST be enabled by default and directed to the central sink.
network_flow_log_captured_sent
101
CCC.Logging
CCC.Logging.CN01.AR02
When a new cloud compute resource is deployed, it MUST be configured to forward all relevant logs (e.g., OS, application, service logs) to the central log sink.
network_flow_log_captured_sent
101
CCC.Logging
CCC.Logging.CN02.AR01
When a new log bucket or stream is created, its retention policy MUST be configured in accordance with organisation's data retention policy.
network_flow_log_more_than_90_days
101
CCC.Logging
CCC.Logging.CN02.AR02
When a query is performed to retrieve log events older than the number of days defined in the organisation's data retention policy, it MUST return an empty result.
network_flow_log_more_than_90_days
101
CCC.VPC
CCC.VPC.CN04.AR01
When any network traffic goes to or from an interface in the VPC, the service MUST capture and log all relevant information.
network_flow_log_captured_sent
101
network_flow_log_more_than_90_days
101

Resource Summary

Summary of all resources mentioned in OCSF results

Resource NameResource TypeControl CatalogsTotal TestsPassingFailing
NetworkWatcher_swedencentral
Network202

Test Results

OCSF test results filtered for entries with CCC compliance mappings

StatusFindingResource NameResource TypeMessageTest Requirements
FAIL
Ensure that network flow logs are captured and fed into a central log analytics workspace.
Network Watcher NetworkWatcher_swedencentral from subscription Azure subscription 1 has no flow logs
NetworkWatcher_swedencentral
Network
Network Watcher NetworkWatcher_swedencentral from subscription Azure subscription 1 has no flow logs
FAIL
Ensure that Network Security Group Flow Log retention period is 0, 90 days or greater
Network Watcher NetworkWatcher_swedencentral from subscription Azure subscription 1 has no flow logs
NetworkWatcher_swedencentral
Network
Network Watcher NetworkWatcher_swedencentral from subscription Azure subscription 1 has no flow logs