Ensures that SMB file shares are configured to only allow AES-256-GCM or higher for SMB channel encryption.
Weaker SMB channel encryption algorithms such as AES-128-CCM and AES-128-GCM offer less protection against eavesdropping and man-in-the-middle attacks. Restricting SMB file shares to AES-256-GCM only helps ensure data confidentiality and integrity in transit.
Modify the SMB security settings for the storage account file service and allow only AES-256-GCM for channel encryption.