More Info:

Your AWS account should not have excessive number of security groups per region.

Risk Level

Medium

Address

Security

Compliance Standards

AWSWAF

Triage and Remediation

Remediation

Excessive counts in Security Groups could indicate that there are too many rules in a single Security Group, which can lead to security risks and complexity in managing the rules. To remediate this issue in AWS using the AWS console, follow these steps:

  1. Log in to the AWS Management Console and navigate to the EC2 dashboard.
  2. Select the Security Group that has excessive counts.
  3. Click on the “Edit inbound rules” button to modify the rules.
  4. Review the rules and identify any redundant or unnecessary rules.
  5. Remove any redundant or unnecessary rules by clicking on the “X” button next to each rule.
  6. Consolidate similar rules by combining them into a single rule.
  7. Click on the “Save rules” button to save the changes.

By following these steps, you should be able to remediate the excessive counts in the Security Group and reduce the risk of security breaches.

Additional Reading: