Missing description for security group/security group rule.
| Property | |
|---|---|
| Language | |
| Severity | |
| Service | redshift |
| Provider | AWS |
Description#
Security groups or their rules are missing descriptions, making it unclear why specific firewall rules exist. This lack of context complicates auditing, troubleshooting, and maintaining security configurations.
Impact#
Without descriptions, it becomes difficult to track the purpose of each security group or rule, increasing the risk of accidental misconfiguration, overly permissive access, or unintentional exposure of resources. This can hinder incident response and lead to potential security gaps.
Resolution#
Add descriptions for all security groups and rules