Control: 1.12 Ensure that 'Guest user permissions are limited' is set to 'Yes'
Limit guest user permissions.
Limiting guest access ensures that guest accounts do not have permission for certain directory tasks, such as enumerating users, groups or other directory resources, and cannot be assigned to administrative roles in your directory. If guest access in not limited, they have the same access to directory data as regular users.
- Log in to Azure Active Directory
- Go to
External Identitiesin side bar
- Go to
External collaboration settingsfurther from side bar
- Set Guest users permissions to limited as per organization policy.
See more details here
steampipe check azure_compliance.control.cis_v130_1_12
This control uses a named query:ad_manual_control