Skip to content

GCP Firewall rule allows all traffic on FTP port (21)

Description

Code Example

go
# pass

resource "google_compute_firewall" "restricted" {
  name    = "example"
  network = "google_compute_network.vpc.name"

  allow {
    protocol = "tcp"
    ports    = ["21"]
  }

  source_ranges = ["172.1.2.3/32"]
  target_tags   = ["ftp"]
}

Remediation

Terraform

Rule Details

FieldValue
IDIAC-0933
SeverityINFO
IaC TypeTerraform
FrameworksTerraform
Checkov IDCKV_GCP_75

References