/
Key vaults should have purge protection enabled

Key vaults should have purge protection enabled

Description:

Purge protection ensures that even if the keys are accidentally deleted, they are stored locally and backed up for 90 days by default. This behavior should be enabled.



Solution/Reference: 

https://docs.microsoft.com/en-us/azure/key-vault/general/soft-delete-overview

Related content

Key Vaults Should Have Soft Delete Enabled
Key Vaults Should Have Soft Delete Enabled
More like this
Key Vault Keys Should Have an Expiration Date
Key Vault Keys Should Have an Expiration Date
More like this
Key Vault Secrets Should Have an Expiration Date
Key Vault Secrets Should Have an Expiration Date
More like this
Validity Period of Certificates Stored in Azure Key Vault Should Not Exceed 12 Months
Validity Period of Certificates Stored in Azure Key Vault Should Not Exceed 12 Months
More like this
Storage Accounts Should Use Customer-Managed Key (CMK) for Encryption
Storage Accounts Should Use Customer-Managed Key (CMK) for Encryption
More like this
Private Endpoint Should be Configured for Key Vault
Private Endpoint Should be Configured for Key Vault
More like this