Ensure that Boot Diagnostics feature is enabled for your Azure virtual machines (VMs) in order to capture server serial console output and the operating system screenshots, required for diagnosing and troubleshooting VM startup issues.
This rule resolution is part of the Conformity Security & Compliance tool for Azure.
Boot Diagnostics enables you to see the state of your Azure virtual machine as it boots up. Enabling Boot Diagnostics feature allows Microsoft Azure cloud platform to inspect the virtual machine operating system (OS) for provisioning errors, helping to provide deeper information on the root causes of the startup failures.
Audit
To determine if your Azure virtual machines (VMs) are configured to use Boot Diagnostics, perform the following actions:
Remediation / Resolution
Boot Diagnostics collects serial log information and screenshots from virtual machines to help you to diagnose startup issues. To enable this feature for your Microsoft Azure virtual machines, perform the following actions:
References
- Azure Official Documentation
- Microsoft Azure Support diagnostic information and memory dump collection
- How to use boot diagnostics to troubleshoot virtual machines in Azure
- Azure PowerShell Documentation
- az vm list
- az vm show
- az storage account list
- az vm boot-diagnostics enable
- az vm restart
Unlock the Remediation Steps
Free 30-day Trial
Automatically audit your configurations with Conformity
and gain access to our cloud security platform.
You are auditing:
Enable Virtual Machine Boot Diagnostics
Risk Level: Medium