Skip to main content

RDS Whitelist Internet Restriction

ID: rule:aliyun:rds-white-list-internet-ip-access-check
Severity: high

Description

Ensures RDS security IP whitelists do not contain 0.0.0.0/0.

Reason for Violation

Allowing 0.0.0.0/0 in the whitelist exposes the database to all public internet traffic.

Recommendation

Remove 0.0.0.0/0 from the RDS security IP list and use specific trusted IPs.

Resource Types

  • ALIYUN::RDS::DBInstance