turbot/terraform_gcp_compliance

Control: Cloud Armor prevents message lookup in Log4j2

Description

This control checks if Cloud Armor is configured to prevent message lookup in Log4j2. See CVE-2021-44228 aka log4jshell.

Usage

Run the control in your terminal:

powerpipe control run terraform_gcp_compliance.control.compute_security_policy_prevent_message_lookup

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run terraform_gcp_compliance.control.compute_security_policy_prevent_message_lookup --share

SQL

This control uses a named query:

compute_security_policy_prevent_message_lookup

Tags