Network misconfigurations

Network ACL allows ingress from 0.0.0.0/0 to SSH port (22) or Remote Desktop port (3389)

Description

The Network Access Control List (NACL) function provide stateless filtering of ingress and egress network traffic to AWS resources. It was detected that {AwsEc2NetworkAcl} allows ingress from 0.0.0.0/0 to SSH port (22) or RDP port (3389). It is advised that no NACL allows unrestricted ingress access to SSH port or Remote Desktop port.