πΌ CC6.1-7 Restricts Access to Information Assets
- Contextual name: πΌ CC6.1-7 Restricts Access to Information Assets
- ID:
/frameworks/soc-2/cc6/01/07
- Located in: πΌ CC6.1 The entity implements logical access security software, infrastructure, and architectures over protected information assets to protect them from security events to meet the entity's objectives.
Descriptionβ
Combinations of data classification, separate data structures, port restrictions, access protocol restrictions, user identification, and digital certificates are used to establish access control rules for information assets.
Similarβ
- Internal
- ID:
dec-c-ea331b08
- ID:
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|
Policies (12)β
Policy | Logic Count | Flags |
---|---|---|
π AWS EC2 Security Group allows public IPv4 (0.0.0.0/0) access to admin ports π’ | 1 | π’ x6 |
π AWS EC2 Security Group allows public IPv6 (::/0) access to admin ports π’ | 1 | π’ x6 |
π AWS EC2 Security Group allows unrestricted DNS traffic π’ | 1 | π’ x6 |
π AWS EC2 Security Group allows unrestricted FTP traffic π’ | 1 | π’ x6 |
π AWS EC2 Security Group allows unrestricted ICMP traffic π’ | 1 | π’ x6 |
π AWS EC2 Security Group allows unrestricted NetBIOS traffic π’ | 1 | π’ x6 |
π AWS EC2 Security Group allows unrestricted RPC traffic π’ | 1 | π’ x6 |
π AWS EC2 Security Group allows unrestricted SMTP traffic π’ | 1 | π’ x6 |
π AWS EC2 Security Group allows unrestricted traffic to MSSQL π’ | 1 | π’ x6 |
π AWS EC2 Security Group allows unrestricted traffic to MySQL π’ | 1 | π’ x6 |
π AWS EC2 Security Group allows unrestricted traffic to PostgreSQL π’ | 1 | π’ x6 |
π Azure Storage Account Allow Blob Anonymous Access is set enabled π’ | 1 | π’ x6 |
Internal Rulesβ
Rule | Policies | Flags |
---|---|---|
βοΈ dec-x-3e379c67 | 1 | |
βοΈ dec-x-6eab9b88 | 1 | |
βοΈ dec-x-11c3009f | 1 | |
βοΈ dec-x-42a09084 | 1 | |
βοΈ dec-x-293ab45b | 1 | |
βοΈ dec-x-66358b45 | 1 | |
βοΈ dec-x-083928f5 | 1 | |
βοΈ dec-x-bcae85fb | 2 | |
βοΈ dec-x-ca1c0c0d | 1 | |
βοΈ dec-x-f12d78aa | 1 | |
βοΈ dec-z-dbeeed9f | 1 | |
βοΈ dec-z-f778950c | 1 |