Skip to main content

Mondoo Azure Resource Pack Reference

The Azure resource pack lets you use MQL to query and assess the security of your Azure cloud services.

Resources included in this pack:

IDDESCRIPTION
azureAzure resource
azure.subscriptionAzure subscription
azure.subscription.advisorServiceAzure Advisor
azure.subscription.advisorService.recommendationAzure Advisor recommendation
azure.subscription.advisorService.scoreAzure Advisor score
azure.subscription.advisorService.securityScoreAzure Advisor security score
azure.subscription.advisorService.timeSeriesAzure Advisor time series
azure.subscription.aksServiceAzure Kubernetes Service
azure.subscription.aksService.clusterAzure Kubernetes Service cluster
azure.subscription.authorizationServiceAzure authorization
azure.subscription.authorizationService.roleDefinitionAzure role definition
azure.subscription.authorizationService.roleDefinition.permissionAzure role definition permission
azure.subscription.cloudDefenderServiceMicrosoft Defender for Cloud
azure.subscription.cloudDefenderService.securityContactMicrosoft Defender for Cloud security contact
azure.subscription.computeServiceAzure compute
azure.subscription.computeService.diskAzure disk resource
azure.subscription.computeService.vmAzure compute virtual machine
azure.subscription.cosmosDbServiceAzure Cosmos DB
azure.subscription.cosmosDbService.accountAzure Cosmos DB account
azure.subscription.keyVaultServiceAzure Key Vault
azure.subscription.keyVaultService.certificateAzure Key Vault certificate
azure.subscription.keyVaultService.keyAzure Key Vault key
azure.subscription.keyVaultService.secretAzure Key Vault secret
azure.subscription.keyVaultService.vaultAzure Key Vault vault
azure.subscription.mariaDbServiceAzure Database for MariaDB
azure.subscription.mariaDbService.databaseAzure Database for MariaDB database
azure.subscription.mariaDbService.serverAzure Database for MariaDB server
azure.subscription.monitorServiceAzure Monitor
azure.subscription.monitorService.activityLogAzure Monitor activity log
azure.subscription.monitorService.activityLog.alertAzure Monitor activity log alert
azure.subscription.monitorService.applicationInsightAzure Monitor application insights
azure.subscription.monitorService.diagnosticsettingAzure Monitor diagnostic setting
azure.subscription.monitorService.logprofileAzure Monitor log profile
azure.subscription.mySqlServiceAzure Database for MySQL
azure.subscription.mySqlService.databaseAzure Database for MySQL database
azure.subscription.mySqlService.flexibleServerAzure Database for MySQL flexible server
azure.subscription.mySqlService.serverAzure Database for MySQL server
azure.subscription.networkServiceAzure network
azure.subscription.networkService.appSecurityGroupAzure network application security group
azure.subscription.networkService.applicationFirewallPolicyAzure Application Firewall Policy (WAF)
azure.subscription.networkService.applicationGatewayAzure Application Gateway
azure.subscription.networkService.backendAddressPoolAzure network backend address pool
azure.subscription.networkService.bastionHostAzure Network Bastion host
azure.subscription.networkService.bgpSettingsAzure network BGP settings
azure.subscription.networkService.bgpSettings.ipConfigurationBgpPeeringAddressAzure BGP settings IP configuration
azure.subscription.networkService.firewallAzure network firewall
azure.subscription.networkService.firewall.applicationRuleAzure network firewall application rule
azure.subscription.networkService.firewall.ipConfigAzure network firewall IP configuration
azure.subscription.networkService.firewall.natRuleAzure network firewall NAT rule
azure.subscription.networkService.firewall.networkRuleAzure network firewall network rule
azure.subscription.networkService.firewallPolicyAzure network firewall policy
azure.subscription.networkService.frontendIpConfigAzure network frontend IP configuration
azure.subscription.networkService.inboundNatPoolAzure network inbound NAT pool
azure.subscription.networkService.inboundNatRuleAzure network inbound NAT rule
azure.subscription.networkService.interfaceAzure network interface
azure.subscription.networkService.ipAddressAzure network IP address
azure.subscription.networkService.loadBalancerAzure Load Balancer
azure.subscription.networkService.loadBalancerRuleAzure Load Balancer rule
azure.subscription.networkService.natGatewayAzure network NAT gateway
azure.subscription.networkService.outboundRuleAzure network outbound rule
azure.subscription.networkService.probeAzure network probe
azure.subscription.networkService.securityGroupAzure network security group
azure.subscription.networkService.securityruleAzure network security rule
azure.subscription.networkService.subnetAzure network subnet
azure.subscription.networkService.virtualNetworkAzure Virtual network (VNet)
azure.subscription.networkService.virtualNetwork.dhcpOptionsAzure Virtual Network DHCP options
azure.subscription.networkService.virtualNetworkGatewayAzure virtual network (VNet) gateway
azure.subscription.networkService.virtualNetworkGateway.connectionAzure Virtual Network (VNet) gateway connection
azure.subscription.networkService.virtualNetworkGateway.ipConfigAzure Virtual Network (VNet) gateway IP configuration
azure.subscription.networkService.watcherAzure Network Watcher
azure.subscription.networkService.watcher.flowlogAzure Network Watcher flow log
azure.subscription.postgreSqlServiceAzure Database for PostgreSQL
azure.subscription.postgreSqlService.databaseAzure Database for PostgreSQL database
azure.subscription.postgreSqlService.serverAzure Database for PostgreSQL server
azure.subscription.resourceAzure resource
azure.subscription.resourcegroupAzure resource group
azure.subscription.sqlServiceAzure SQL
azure.subscription.sqlService.configurationAzure SQL configuration
azure.subscription.sqlService.databaseAzure SQL server database
azure.subscription.sqlService.databaseusageAzure SQL database usage
azure.subscription.sqlService.firewallruleAzure SQL firewall rule
azure.subscription.sqlService.serverAzure SQL server
azure.subscription.sqlService.server.administratorAzure SQL server administrator
azure.subscription.sqlService.server.vulnerabilityassessmentsettingsAzure SQL server vulnerability assessment settings
azure.subscription.sqlService.virtualNetworkRuleAzure SQL virtual network rule
azure.subscription.storageServiceAzure Storage
azure.subscription.storageService.accountAzure Storage account
azure.subscription.storageService.account.containerAzure Storage container
azure.subscription.storageService.account.dataProtectionAzure Storage account data protection
azure.subscription.storageService.account.service.propertiesAzure Storage account service properties
azure.subscription.storageService.account.service.properties.loggingAzure Storage account service properties logging
azure.subscription.storageService.account.service.properties.metricsAzure Storage account service properties metrics
azure.subscription.storageService.account.service.properties.retentionPolicyAzure Storage account service properties retention policy
azure.subscription.webServiceAzure Web
azure.subscription.webService.appsiteAzure Web app site
azure.subscription.webService.appsiteauthsettingsAzure AppSite authentication settings
azure.subscription.webService.appsiteconfigAzure AppSite config