prancer-io / prancer-compliance-test

This repository includes cloud security policies for IaC and live resources.
https://www.prancer.io
39 stars 11 forks source link

Update/Create New GCP Policies. #526

Closed ishan-pansuriya closed 1 year ago

ishan-pansuriya commented 1 year ago

Create new Policies Ensure, API key is created for a project in Google Cloud Provider Ensure, Identity-Aware Proxy (IAP) not enabled for External HTTP(s) Load Balancer in Google Cloud Provider Updated Policies Ensure, GKE have Cloud Monitoring disabled in Google Cloud Provider Ensure, PostgreSQL instance database flag log_statement is not set appropriately in Google Cloud Provider Ensure, Storage Buckets with publicly accessible logs in Google Cloud Provider Ensure, GKE have binary authorization disabled in Google Cloud Provider Ensure, Storage log buckets have object versioning disabled in Google Cloud Provider Ensure, entities with permissions to impersonate a service account in another project in Google Cloud Provider Ensure, users with 'Owner' role on org level in Google Cloud Provider Ensure, service accounts with 'Owner' role on org level in Google Cloud Provider Ensure, IAM effective permissions are over-privileged (90 days) in Google Cloud Provider

jaiminswan commented 1 year ago

To be reviewed and merged