Control: Cloud Armor prevents message lookup in Log4j2
Description
This control checks if Cloud Armor is configured to prevent message lookup in Log4j2. See CVE-2021-44228 aka log4jshell.
Usage
Run the control in your terminal:
powerpipe control run terraform_gcp_compliance.control.compute_security_policy_prevent_message_lookup
Snapshot and share results via Turbot Pipes:
powerpipe loginpowerpipe control run terraform_gcp_compliance.control.compute_security_policy_prevent_message_lookup --share
SQL
This control uses a named query:
compute_security_policy_prevent_message_lookup