Skip to main content

ALB Instance Bind Security Group or Enable ACL

ID: rule:aliyun:alb-instance-bind-security-group-or-enabled-acl
Severity: medium

Description

ALB instance should have security groups associated or ACL configured for all running listeners.

Reason for Violation

ALB instance does not have security groups associated, which may expose the load balancer to security risks.

Recommendation

Associate security groups with the ALB instance by configuring SecurityGroupIds property, or set up ACL for all listeners.

Resource Types

  • ALIYUN::ALB::LoadBalancer