EC2: DescribeNetworkAcls - 'Review list of network ACLs'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

A network access control list (ACL) is an optional layer of security that acts as a firewall for controlling traffic in and out of a subnet. You might set up network ACLs with rules similar to your security groups in order to add an additional layer of security to your VPC.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Review the list of ACL rules. If any are incorrect or undocumented they should be investigated.

See Also

https://d1.awsstatic.com/whitepapers/Security/AWS_Security_Best_Practices.pdf

Item Details

Category: ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|AC-4, 800-53|SC-2, 800-53|SC-3, 800-53|SC-7

Plugin: amazon_aws

Control ID: 4444ec587c70855bc879526bc4a00375db275da25ccb2e9fbc9d18b5c3616f86