turbot/terraform_oci_compliance

GitHub
Loading controls...

Control: Ensure the Network default security list of every VCN restricts all traffic except ICMP

Description

A default security list is created when a Virtual Cloud Network (VCN) is created. Security lists provide stateful filtering of ingress and egress network traffic to OCI resources. It is recommended no security list allows unrestricted ingress access to Secure Shell (SSH) via port 22.

Usage

Run the control in your terminal:

steampipe check terraform_oci_compliance.control.vcn_default_security_group_allow_icmp_only

Snapshot and share results via Steampipe Cloud:

steampipe login
steampipe check --share terraform_oci_compliance.control.vcn_default_security_group_allow_icmp_only

SQL

This control uses a named query:

vcn_default_security_group_allow_icmp_only

Tags