GCP
In this section, you will find a list of the rules associated with the GCP platform.
Method | Security Requirement |
---|---|
GCP_STORAGE_LOGGING_IS_NOT_ENABLED_ON_STORAGE_BUCKET | 075. Record exceptional events in logs 320. Avoid client-side control enforcement |
GCP_STORAGE_OBJECT_VERSIONING_IS_NOT_ENABLED | 075. Record exceptional events in logs 320. Avoid client-side control enforcement |
GCP_STORAGE_PUBLIC_BUCKETS | 095. Define users with privileges 096. Set user's required privileges 186. Use the principle of least privilege |
GCP_STORAGE_RETENTION_POLICY_IS_NOT_CONFIGURED | 075. Record exceptional events in logs 320. Avoid client-side control enforcement |
GCP_STORAGE_UNIFORM_BUCKET_LEVEL_ACCESS_IS_DISABLED | 033. Restrict administrative access 176. Restrict system objects 265. Restrict access to critical processes 280. Restrict service root directory |