Ensure that public network access (i.e. all network access) to Microsoft Azure Service Bus namespaces is disabled in order to enhance security by preventing unauthorized access.
When an Azure Service Bus namespace is publicly accessible, all hosts and networks, including the Internet, can access the namespace using an access key, increasing the risk of unauthorized access, potential security breaches, and compliance violations. To limit access to selected, trusted networks, you must configure network access rules for your Service Bus namespaces. This allows traffic from trusted IP addresses only, preventing unauthorized access attempts and protecting your sensitive data.
Audit
To determine whether public network access to your Azure Service Bus namespaces is disabled, perform the following operations:
Remediation / Resolution
To disable public network access to your Microsoft Azure Service Bus namespaces, perform the following operations: