Closed dlapiduz closed 8 years ago
Maybe we can have a (private?) repo that lists IPs and a terraform job in concourse that updates a SG.
@LinuxBozo says we should only this for nessus
@dlapiduz Is this still necessary? @sharms is saying he thinks the necessary restrictions are already in place.
Not in govcloud...
Ah, but in E/W? Then I'll leave it prioritized as-is.
Just to be clear:
Okay!
In order to improve security-in-depth in case the Nessus Manager is compromised, we want to restrict the set of IP address which can access Nessus