Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security Group Allows Public IP address(es) #3553

Open
HugeUA opened this issue Mar 16, 2024 · 0 comments
Open

Security Group Allows Public IP address(es) #3553

HugeUA opened this issue Mar 16, 2024 · 0 comments
Labels
feature-request New feature request for Prowler. status/needs-triage Issue pending triage

Comments

@HugeUA
Copy link

HugeUA commented Mar 16, 2024

New feature motivation

Currently offered check [ec2_securitygroup_allow_wide_open_public_ipv4] nor other checks specific to the services (MySQL, MSSQL, RDP, SSH, etc.) do not flag security groups with a single public IP or Public subnet in source;

Solution Proposed

Create detection that flags any security groups with public IPs in source of the rules

Describe alternatives you've considered

Developing labda that uses regex to check IP/range of every rule of every security group and output list of security groups of non RFC1918 addresses

Additional context

No response

@HugeUA HugeUA added feature-request New feature request for Prowler. status/needs-triage Issue pending triage labels Mar 16, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
feature-request New feature request for Prowler. status/needs-triage Issue pending triage
Projects
None yet
Development

No branches or pull requests

1 participant