EC2: DescribeAddresses - 'Review list of interface assignments and private IPs'

Information

Different security requirements mandate different security controls. It is a security best practice to segment infrastructure into zones that impose similar security controls.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Review the list of public IPs assigned to VPC interfaces and their corresponding private IPs. If any are missing or undocumented they should be investigated.

See Also

https://d1.awsstatic.com/whitepapers/Security/AWS_Security_Best_Practices.pdf

Item Details

Category: ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|AC-4, 800-53|SC-2, 800-53|SC-3, 800-53|SC-7

Plugin: amazon_aws

Control ID: cc6d24a27670eabebeefed28cd0bc4d6cc898d6a0e01970640614a86c1eedfcd