πΌ 1.3 Prohibit direct public access between the Internet and any system component in the cardholder data environment.
-
Contextual name: πΌ 1.3 Prohibit direct public access between the Internet and any system component in the cardholder data environment.
-
ID:
/frameworks/pci-dss-v3.2.1/01/03
-
Located in: πΌ 1 Install and maintain a firewall configuration to protect cardholder data
Descriptionβ
Empty...
Similarβ
- Sections
/frameworks/pci-dss-v4.0/01/04/01
- Internal
- ID:
dec-c-bc1717aa
- ID:
Similar Sections (Take Policies From)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ PCI DSS v4.0 β πΌ 1.4.1 NSCs are implemented between trusted and untrusted networks. | 10 |
Similar Sections (Give Policies To)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ PCI DSS v4.0 β πΌ 1.4.1 NSCs are implemented between trusted and untrusted networks. | 10 |
Sub Sectionsβ
Policies (10)β
Policy | Logic Count | Flags |
---|---|---|
π AWS RDS Instance is publicly accessible and in an unrestricted public subnet π’ | 1 | π’ x6 |
π AWS RDS Snapshot is publicly accessible π’ | 1 | π’ x6 |
π AWS S3 Bucket is not configured to block public access π’ | 1 | π’ x6 |
π Azure Cosmos DB Account Private Endpoints are not used π’ | 1 | π’ x6 |
π Azure Cosmos DB Account Virtual Network Filter is not enabled π’ | 1 | π’ x6 |
π Azure Cosmos DB Entra ID Client Authentication is not used π’ | π’ x3 | |
π Azure Network Security Group allows unrestricted RDP access from the Internet π’ | 1 | π’ x6 |
π Azure Network Security Group allows unrestricted SSH access from the Internet π’ | 1 | π’ x6 |
π Azure Network Security Group allows unrestricted UDP access from the Internet π’ | 1 | π’ x6 |
π Azure Storage Account Allow Blob Anonymous Access is set enabled π’ | 1 | π’ x6 |
Internal Rulesβ
Rule | Policies | Flags |
---|---|---|
βοΈ dec-x-4c15a09f | 1 | |
βοΈ dec-x-46a83a30 | 1 | |
βοΈ dec-x-599c86b4 | 1 | |
βοΈ dec-x-083928f5 | 1 | |
βοΈ dec-x-b4d3d9dc | 2 | |
βοΈ dec-x-b3342905 | 1 | |
βοΈ dec-x-e43fd12e | 1 | |
βοΈ dec-x-ec547a7c | 1 | |
βοΈ dec-x-f937c35f | 1 |