More Info:

Ensure Cloud CDN global backend services have CDN enabled.

Risk Level

High

Address

Operational Maturity, Performance Efficiency, Reliability, Security

Compliance Standards

CBP

Triage and Remediation

Remediation

To remediate the misconfiguration of “Cloud CDN Global Backend Services CDN Should Be Enabled” for GCP using GCP console, follow the below steps:

  1. Open the Google Cloud Console and select the project where the misconfiguration exists.
  2. In the left navigation menu, click on “Network services” and then select “Cloud CDN”.
  3. On the Cloud CDN page, click on the “Create” button.
  4. In the “Create a new Cloud CDN” page, select the backend service that you want to enable CDN for.
  5. Under the “Cache Key Policy” section, select “Include Host” and “Include Protocol”.
  6. Under the “Backend Buckets” section, select the backend bucket that you want to use as a source for the CDN.
  7. Under the “Frontend Configurations” section, select the protocol and port that you want to use for the CDN.
  8. Click on the “Create” button to create the CDN.

Once the CDN is created, it will take some time to propagate across all the CDN edge locations. You can verify the status of the CDN by checking the “Status” column on the Cloud CDN page.

Additional Reading: