Property
Languageterraform
Severitylow
Servicecompute
ProviderGoogle

Description#

VPC subnetworks are configured without VPC flow logs enabled, resulting in a lack of traffic monitoring and visibility into network activity. This prevents capturing valuable data on network flows for auditing and security analysis.

Impact#

Without VPC flow logs, suspicious or unauthorized network traffic may go undetected, limiting the ability to investigate security incidents or troubleshoot networking issues. This can lead to delayed detection of breaches or policy violations, increasing organizational risk.

Resolution#

Enable VPC flow logs