Property
Languageterraform
Severitylow
Servicenetwork
ProviderNifcloud

Description#

The ELB is configured to use a common private network that is shared with other users, rather than an isolated private LAN. This setup fails to properly isolate internal traffic, exposing sensitive communication to potential interception.

Impact#

Using a shared network allows other tenants on the same provider to potentially access or intercept data transmitted between servers, increasing the risk of data leakage or unauthorized access to sensitive resources.

Resolution#

Use private LAN