Network misconfigurations

Ensure routing tables for VPC peering are “”least access””

Platform(s)
Compliance Frameworks

AWS CIS, Brazilian General Data Protection (LGPD), CCPA, cis_8, CPRA, ISO 27701, iso_27001_2022, iso_27002_2022, Mitre ATT&CK, mpa, New Zealand Information Security Manual, NIST 800-171, NIST 800-53, Orca Best Practices, PDPA, UK Cyber Essentials

Description

Once a VPC peering connection is established, routing tables must be updated to establish any connections between the peered VPCs. These routes can be as specific as desired - even peering a VPC to only a single host on the other side of the connection.