More Info:

Cloud CDN regional backend services should have request logging enabled. Logging requests to Cloud CDN endpoints is a helpful way of detecting and investigating potential attacks.

Risk Level

Low

Address

Security, Operational Maturity

Compliance Standards

GDPR, HITRUST, SOC2, NISTCSF, PCIDSS

Triage and Remediation

Remediation

To remediate the misconfiguration of “Cloud CDN Regional Backend Services Should Have Logging Enabled” for GCP using the GCP console, follow the below steps:

  1. Open the Google Cloud Console and navigate to the Cloud CDN page.
  2. Select the name of the CDN that you want to remediate.
  3. In the left-hand menu, select the “Backend services” option.
  4. Click on the name of the backend service that you want to remediate.
  5. In the backend service page, scroll down to the “Cloud Logging” section.
  6. Click on the “Add Log Sink” button.
  7. In the “Create Sink” page, enter a name for the log sink.
  8. In the “Sink Service” section, select “Cloud Logging”.
  9. In the “Sink Destination” section, select the destination where you want to send the logs.
  10. In the “Filter” section, specify the filter criteria for the logs that you want to send to the destination.
  11. Click on the “Create” button to create the log sink.

Once the log sink is created, all the logs generated by the backend service will be sent to the specified destination. This will remediate the misconfiguration of “Cloud CDN Regional Backend Services Should Have Logging Enabled” for GCP.

Additional Reading: