Skip to content

Fixed PR-GCP-TRF-INST-009: Ensure GCP HTTPS Load balancer SSL Policy is using restrictive profile#704

Open
rezoan wants to merge 1 commit intogcp-resource-addfrom
gcp-resource-add_1670322585
Open

Fixed PR-GCP-TRF-INST-009: Ensure GCP HTTPS Load balancer SSL Policy is using restrictive profile#704
rezoan wants to merge 1 commit intogcp-resource-addfrom
gcp-resource-add_1670322585

Conversation

@rezoan
Copy link
Copy Markdown
Contributor

@rezoan rezoan commented Dec 6, 2022

Violation Id: PR-GCP-TRF-INST-009

Violation Description:

This policy identifies HTTPS Load balancers which are not using restrictive profile in it's SSL Policy, which controls sets of features used in negotiating SSL with clients. As a best security practice, use RESTRICTED as SSL policy profile as it meets stricter compliance requirements and does not include any out-of-date SSL features.

How to Fix:

make sure you are following the deployment template format presented here

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants