rspec/rules/S6414/description.adoc
github-actions[bot] e7aa3e8c2e
Create rule S6414[terraform]: Excluding users or groups activities from audit logs is security-sensitive (#805)
* Create rule S6414

* init s6414

* fixes after review

* fix noncompliant sample

* Fix typo in the rule title

* Add code highlighted tag to code example

Co-authored-by: eric-therond-sonarsource <eric-therond-sonarsource@users.noreply.github.com>
Co-authored-by: eric-therond-sonarsource <eric.therond@sonarsource.com>
Co-authored-by: Pierre-Loup Tristant <pierre-loup.tristant@sonarsource.com>
Co-authored-by: Nils Werner <nils.werner@sonarsource.com>
2022-03-04 12:52:46 +00:00

3 lines
447 B
Plaintext

The Google Cloud audit logs service records administrative activities and accesses to Google Cloud resources of the project. It's important to enable audit logs to be able to investigate malicious activities in the event of a security incident.
Some project members may be exempted from having their activities recorded in the Google Cloud audit log service, creating a blind spot and reducing the capacity to investigate future security events.