Links

Microsoft ServiceBus

Best practices and references below are based on published guidance from the cloud service provider and may reference native capabilities the cloud service provider offers. If you are not using the native security capabilities, the same security requirement can be met using other security capabilities your organization utilizes

Identification and Authentication

Microsoft.ServiceBus/namespaces

Identity-Principal Id
Terraform
Identity-Tenant Id
Terraform
Identity-Type
Terraform

Asset Inventory

Design Guidance:

Microsoft.ServiceBus/namespaces

Microsoft.ServiceBus/namespaces/queues

Microsoft.ServiceBus/namespaces/topics


Protect Cryptographic Keys

Design Guidance:

Microsoft.ServiceBus/namespaces

Encryption-Key Source
Terraform
Key Vault Properties-Key Name
Terraform
Key Vault Properties-Key Vault Uri
Terraform

Design for High Availability

Microsoft.ServiceBus/namespaces

Zone Redundant
Terraform

IP Whitelisting

Design Guidance:

Microsoft.ServiceBus/namespaces/ipfilterrules


Subnet Isolation

Design Guidance:

Microsoft.ServiceBus/namespaces/virtualnetworkrules

Name
Virtual Network Subnet Id

Data Minimization

Microsoft.ServiceBus/namespaces/queues

Auto Delete On Idle
Terraform

Microsoft.ServiceBus/namespaces/topics

Auto Delete On Idle
Terraform