💼 [EC2.2] VPC default security groups should not allow inbound or outbound traffic
- ID:
/frameworks/aws-fsbp-v1.0.0/ec2/02
Stats
not available
Description
The rules for the default security group allow all outbound and inbound traffic from network interfaces (and their associated instances) that are assigned to the same security group. We recommend that you don't use the default security group. Because the default security group cannot be deleted, you should change the default security group rules setting to restrict inbound and outbound traffic. This prevents unintended traffic if the default security group is accident
Similar
- AWS Security Hub
- Internal
- ID:
dec-c-81379a6b
- ID:
Similar Sections (Give Policies To)
Sub Sections
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|
Policies (1)
| Policy | Logic Count | Flags | Compliance |
|---|---|---|---|
| 🛡️ AWS EC2 Default Security Group does not restrict all traffic🟢 | 1 | 🟢 x6 | no data |