GCP Knowledge Bases

4.10 Ensure That App Engine Applications Enforce HTTPS Connections (Manual)
Profile Applicability: Level 2 Description: To ensure secure communication, all connections to App Engine applications should be secured by HTTPS by de...
Thu, 20 Mar, 2025 at 3:31 AM
4.11 Ensure That Compute Instances Have Confidential Computing Enabled (Automated)
Profile Applicability: Level 2 Description: Google Cloud provides Confidential Computing, a feature that encrypts data in-use during processing. This b...
Thu, 20 Mar, 2025 at 3:28 AM
4.12 Ensure the Latest Operating System Updates Are Installed On Your Virtual Machines in All Projects (Manual)
Profile Applicability: Level 2 Description: Google Cloud Virtual Machines (VMs) can report operating system (OS) inventory data through the OS Config a...
Thu, 20 Mar, 2025 at 3:23 AM
5.1 Ensure Cloud Storage Buckets Are Not Anonymously or Publicly Accessible (Automated)
Profile Applicability: Level 1 Description: It is recommended that IAM policies for Cloud Storage buckets do not permit anonymous or public access. Pub...
Thu, 20 Mar, 2025 at 3:21 AM
5.2 Ensure That Cloud Storage Buckets Have Uniform Bucket-Level Access Enabled (Automated)
Profile Applicability: Level 2 Description: It is recommended to enable uniform bucket-level access on Cloud Storage buckets to standardize and simplif...
Thu, 20 Mar, 2025 at 3:18 AM
6.1.1 Ensure That a MySQL Database Instance Does Not Allow Anyone To Connect With Administrative Privileges (Manual)
Profile Applicability: Level 1 Description: It is recommended to configure a password for the administrative user (typically root) on MySQL database in...
Thu, 20 Mar, 2025 at 3:03 AM
6.1.2 Ensure ‘Skip_show_database’ Database Flag for Cloud SQL MySQL Instance Is Set to ‘On’ (Automated)
Profile Applicability: Level 1 Description: The skip_show_database database flag for Cloud SQL MySQL instances should be set to ON. This configuration pr...
Thu, 20 Mar, 2025 at 2:55 AM
6.1.3 Ensure That the ‘Local_infile’ Database Flag for a Cloud SQL MySQL Instance Is Set to ‘Off’ (Automated)
Profile Applicability: Level 1 Description: The local_infile database flag controls whether the server permits local data loading using the LOAD DATA L...
Thu, 20 Mar, 2025 at 2:52 AM
6.2.1 Ensure the ‘Log_error_verbosity’ Database Flag for Cloud SQL PostgreSQL Instance Is Set to ‘DEFAULT’ or Stricter (Automated)
Profile Applicability: Level 2 Description: The log_error_verbosity database flag determines the level of detail included in error log messages. Accept...
Thu, 20 Mar, 2025 at 2:47 AM
6.2.2 Ensure That the ‘Log_connections’ Database Flag for Cloud SQL PostgreSQL Instance Is Set to ‘On’ (Automated)
Profile Applicability: Level 1 Description: The log_connections database flag, when enabled, ensures that each attempted connection to the PostgreSQL s...
Thu, 20 Mar, 2025 at 2:42 AM