locked
Azure Security Center continues to prompt me to enable diagnostic logging for key vault days after I have enabled it RRS feed

  • Question

  • Hello,

    Azure security center is reporting that I need to enable logging for the key vault. I enabled the logging 3 days ago, but can't get this alert to clear. I navigated into Log Analytics and verified key vault transactions are being logged. Any suggestions? I'm currently not able to upload screenshots due to my MS account not being verified yet. 

    Thanks!

    Thursday, May 14, 2020 5:06 PM

All replies

  • Hi,

    I believe this issue happens because the  recommendation has some latency,  it is not real time update.  However, can you please check if "Manual remediation" section under "Remediation steps" contains any note about setting up the retention days to 1 year.  If yes, can you please set the retention days for a year and check back after few hours or a day if the recommendation goes away. 

    Thanks
    Saurabh
    Thursday, May 28, 2020 11:48 PM