guardrails-samples icon indicating copy to clipboard operation
guardrails-samples copied to clipboard

Updated Policy Pack as per review

Open RahulLah19 opened this issue 7 months ago • 1 comments

Updated

  • [x] Azure > Cosmos DB > Database Account - Enforce Azure Cosmos DB Database Accounts to be Accessible to Selected Networks
  • [x] Azure > Cosmos DB > Database Account > Firewall - Azure CIS v2.0.0 - Section 4 - Database Services
  • [x] AWS > IAM > Stack - Deny all AWS IAM actions from Unapproved Networks
  • [x] AWS > VPC > Security Group > Ingress Rules - Enforce Block Unapproved Network Access for AWS VPC Security Groups
  • [x] AWS > VPC > Security Group > Egress Rules > Approved - enforce_default_security_groups_to_not_allow_any_access
  • [x] AWS > VPC > Security Group > Approved - Enforce AWS VPC Default Security Groups to Not Exist
  • [x] AWS > VPC > Elastic IP > Approved - Enforce AWS VPC Elastic IPs to Not Be Unassociated
  • [x] AWS > VPC > Elastic IP > Approved - Enforce AWS VPC Elastic IPs to Not Exist
  • [x] AWS > VPC > Security Group > Ingress Rules > Approved - Enforce Removal of Common Admin Ports Open to the Internet for AWS VPC Security Groups

Test Screenshots

Azure > Cosmos DB > Database Account - Enforce Azure Cosmos DB Database Accounts to be Accessible to Selected Networks

image image

AWS > VPC > Security Group > Ingress Rules - Enforce Block Unapproved Network Access for AWS VPC Security Groups

image image

AWS > VPC > Security Group > Egress Rules > Approved - enforce_default_security_groups_to_not_allow_any_access

image image image

RahulLah19 avatar Jul 25 '24 14:07 RahulLah19