Property
Languageterraform
Severitylow
Serviceec2
ProviderAWS

Description#

Security groups are defined without a description field, making it difficult to understand their intended purpose or usage. This lack of context complicates auditing, management, and troubleshooting of firewall rules.

Impact#

Missing descriptions can lead to misconfiguration, accidental exposure, or difficulty identifying unnecessary or overly permissive rules. This increases the risk of unauthorized access and slows down incident response or compliance efforts.

Resolution#

Add descriptions for all security groups