The Nerdio deployment raises a High Severity security recommendation under Microsoft Defender for Cloud - “SQL databases should have vulnerability findings resolved” with the following finding - "VA1143 - 'dbo' user should not be used for normal service operation”. Requesting a security hardening doc to address that issue, like another DB account to manage normal service operations and updating the base Nerdio deployment to address that security finding as part of the initial/future deployments. This is based on a FedRamp benchmark.
Microsoft Defender for Cloud finding for Azure SQL - “VA1143 - 'dbo' user should not be used for normal service operation”
2
Hi Peter, thank you raising this. We will investigate internally with our team.
Please sign in to leave a comment.
Comments (1 comment)