security_monkey
security_monkey copied to clipboard
Feature Request: Audit Network ACLs (NACL) in VPC
It'd be nice if there was an audit check to track changes to NACLs in a VPC.
An alert would be if an ALLOW from source 0.0.0.0/0 was added.
Another alert may be if any of the ingress or egress rules were changed.
A VPC Network ACL watcher was added in #411.
Now we just need an Auditor.