turbot/alicloud_compliance

Control: 3.5 Ensure the security group are configured with fine grained rules

Description

Security groups provide stateful filtering of ingress/egress network traffic to Alibaba Cloud resources. It is recommended that all security group configured with fine grained rules.

Remediation

From Console

  1. Logon to ECS Console.
  2. In the left-side navigation pane, choose Network & Security > Security Groups.
  3. Remove any unnecessary rules in all security groups.

Usage

steampipe check alicloud_compliance.control.cis_v100_3_5

SQL

This control uses a named query:

manual_control

Tags