Skip to main content

TSDB Instance Does Not Allow Any IP Access

ID: rule:aliyun:tsdb-instance-security-ip-check
Severity: high
IaC Types: ROS, Terraform

Description

Ensures that TSDB instances do not have security whitelists that allow all IPs.

Reason for Violation

TSDB instance allows access from any IP address, which is a security risk.

Recommendation

Configure security_ip_list to restrict access to specific IPs instead of allowing all.

Resource Types

  • ROS: ALIYUN::TSDB::HiTSDBInstance
  • Terraform: alicloud_tsdb_instance