Skip to main content

NAS Mount Target Access Group Check

ID: rule:aliyun:nas-filesystem-mount-target-access-group-check
Severity: medium
IaC Types: ROS, Terraform

Description

Ensures NAS mount targets do not use the 'DEFAULT_VPC_GROUP_NAME'.

Reason for Violation

The default access group may have overly permissive rules.

Recommendation

Use a custom access group with restricted rules for NAS mount targets.

Resource Types

  • ROS: ALIYUN::NAS::MountTarget
  • Terraform: alicloud_nas_mount_target