All Products
Search
Document Center

Cloud Config:vpc-network-acl-unused-check

Last Updated:Jul 11, 2024

Checks whether at least one resource is associated with each network access control list (ACL). If so, the evaluation result is Compliant.

Scenarios

You can associate a network ACL with a vSwitch to enable access control for the traffic of network instances in the vSwitch.

Risk level

Default risk level: low.

When you apply this rule, you can change the risk level based on your business requirements.

Compliance evaluation logic

Checks whether at least one resource is associated with each network ACL. If so, the evaluation result is Compliant.

Rule details

Parameter

Description

Rule Template Name

vpc-network-acl-unused-check

Rule Template Identifier

vpc-network-acl-unused-check

Tag

NetworkAcl

Automatic remediation

Not supported

Invoke Type

Configuration Change

Supported resource type

Network ACL (ACS::VPC::NetworkAcl)

Input parameter

N/A

Non-compliance remediation

Associate at least one resource with each network ACL. For more information, see Create and manage a network ACL.