More Info:

Cloud CDN should not send any new requests to the unhealthy instance if an compute instance fails health checks

Risk Level

Medium

Address

Reliability, Security

Compliance Standards

CBP

Triage and Remediation

Remediation

To remediate the misconfiguration of Cloud CDN Global Backend Services should have Connection Draining for GCP using GCP console, follow these steps:

  1. Open the GCP console and select the project where the misconfiguration exists.
  2. Navigate to the Cloud CDN page in the console.
  3. Select the name of the CDN that you want to remediate.
  4. In the left-hand navigation menu, click on “Backend Services.”
  5. Click on the name of the backend service that you want to remediate.
  6. In the “Backend Configuration” section, click on “Edit.”
  7. Scroll down to the “Connection Draining” section and toggle the switch to “On.”
  8. Set the “Draining Timeout” to the desired value in seconds.
  9. Click on “Save” to apply the changes.

With these steps, you have successfully remediated the misconfiguration of Cloud CDN Global Backend Services should have Connection Draining for GCP using GCP console.

Additional Reading: