Recommendations Reference Data
In brief
The reference page no longer lists recommendations for resolving vulnerability findings in SQL databases and SQL servers on machines, including their related policy links and high-severity labels.
What Defender admins need to know
Administrators using this reference page will no longer see these two recommendations or their associated details.
Summaries are generated from the documentation change itself.
Documentation change
The comparison below shows only the changed extract. Use the full-page view for complete context.
Severity: High
SQL databases should have vulnerability findings resolved
Description: SQL Vulnerability assessment scans your database for security vulnerabilities, and exposes any deviations from best practices such as misconfigurations, excessive permissions, and unprotected sensitive data. Resolving the vulnerabilities found can greatly improve your database security posture. Learn more
(Related policy: Vulnerabilities on your SQL databases should be remediated).
Severity: High
SQL managed instances should have vulnerability assessment configured
Description: Vulnerability assessment can discover, track, and help you remediate potential database vulnerabilities.
Severity: High
SQL servers on machines should have vulnerability findings resolved
Description: SQL Vulnerability assessment scans your database for security vulnerabilities, and exposes any deviations from best practices such as misconfigurations, excessive permissions, and unprotected sensitive data. Resolving the vulnerabilities found can greatly improve your database security posture. Learn more
(Related policy: Vulnerabilities on your SQL servers on machine should be remediated).
Severity: High
SQL servers should have a Microsoft Entra administrator provisioned
Description: Provision a Microsoft Entra administrator for your SQL server to enable Microsoft Entra authentication. Microsoft Entra authentication enables simplified permission management and centralized identity management of database users and other Microsoft services.
@@ -543,13 +543,6 @@ Configure a private endpoint connection to enable access to traffic coming only **Severity**: High -### SQL databases should have vulnerability findings resolved--**Description**: SQL Vulnerability assessment scans your database for security vulnerabilities, and exposes any deviations from best practices such as misconfigurations, excessive permissions, and unprotected sensitive data. Resolving the vulnerabilities found can greatly improve your database security posture. [Learn more](https://aka.ms/SQL-Vulnerability-Assessment/)-(Related policy: [Vulnerabilities on your SQL databases should be remediated](https://portal.azure.com/#blade/Microsoft_Azure_Policy/PolicyDetailBlade/definitionId/%2fproviders%2fmicrosoft.authorization%2fpolicydefinitions%2ffeedbf84-6b99-488c-acc2-71c829aa5ffc)).--**Severity**: High- ### SQL managed instances should have vulnerability assessment configured **Description**: Vulnerability assessment can discover, track, and help you remediate potential database vulnerabilities.@@ -557,13 +550,6 @@ Configure a private endpoint connection to enable access to traffic coming only **Severity**: High -### SQL servers on machines should have vulnerability findings resolved--**Description**: SQL Vulnerability assessment scans your database for security vulnerabilities, and exposes any deviations from best practices such as misconfigurations, excessive permissions, and unprotected sensitive data. Resolving the vulnerabilities found can greatly improve your database security posture. [Learn more](https://aka.ms/explore-vulnerability-assessment-reports/)-(Related policy: [Vulnerabilities on your SQL servers on machine should be remediated](https://portal.azure.com/#blade/Microsoft_Azure_Policy/PolicyDetailBlade/definitionId/%2fproviders%2fmicrosoft.authorization%2fpolicydefinitions%2f6ba6d016-e7c3-4842-b8f2-4992ebc0d72d)).--**Severity**: High- ### SQL servers should have a Microsoft Entra administrator provisioned **Description**: Provision a Microsoft Entra administrator for your SQL server to enable Microsoft Entra authentication. Microsoft Entra authentication enables simplified permission management and centralized identity management of database users and other Microsoft services. 