Network misconfigurations

Ineffective Network ACL DENY Rule

Risk Level

Informational (4)

Compliance Frameworks


Ensure that Amazon Network ACL DENY rules are effective within the VPC configuration
  • Recommended Mitigation

    Network ACL policies should Deny by default. Deny rules that with CIDR Block other than are deemed ineffective and should be avoided