MEDIUM
Source
CloudSploit
ID
database-private-link-enabled

Ensures SQL Database sync groups are configured to use private link.

Private link feature allows you to choose a service managed private endpoint to establish a secure connection between the sync service and your member/hub databases during the data synchronization process. A service managed private endpoint is a private IP address within a specific virtual network and subnet.

Configure SQL Database sync groups to use private link and mandate manual approval for private endpoint connections.