From the course: Microsoft Cybersecurity Architect (SC-100) Cert Prep by Microsoft Press
Unlock this course with a free trial
Join today to access over 25,500 courses taught by industry experts.
Specify security requirements for web workloads
From the course: Microsoft Cybersecurity Architect (SC-100) Cert Prep by Microsoft Press
Specify security requirements for web workloads
As we look at security requirements for Web workloads, one of the first things that we should do is ensure that we have secure access to web apps with HTTPS. When you create an app service, the default domain name is already accessible using HTTPS. If you can figure a custom domain for your application, you should also secure it with a TLS or SSL certificate so that client browsers can make secured HTTPS connections to the app service on your custom domain. You should also disable insecure protocols. To secure your app against all unencrypted or regular HTTP connections, app services allow you to configure to be enforced.
Contents
-
-
-
-
-
-
-
-
-
(Locked)
Learning objectives33s
-
(Locked)
Specify security baselines for IaaS57s
-
(Locked)
Specify security baselines for PaaS45s
-
(Locked)
Specify security baselines for SaaS34s
-
(Locked)
Specify security baselines for IoT1m 5s
-
(Locked)
Specify security requirements for data workloads4m 22s
-
(Locked)
Specify security requirements for web workloads54s
-
(Locked)
Specify security requirements for storage2m 42s
-
(Locked)
Specify security requirements for containers40s
-
(Locked)
Specify security requirements for container orchestration32s
-
(Locked)
-
-
-