More Info:

Ensure GCP CName records are not vulnerable.

Risk Level

Critical

Address

Security

Compliance Standards

CBP

Triage and Remediation

Remediation

To remediate the CName Records vulnerability in GCP DNS using the GCP console, follow these step-by-step instructions:

  1. Log in to the GCP console (https://console.cloud.google.com) using your credentials.

  2. Navigate to the “DNS” page by selecting the appropriate project from the project dropdown menu and clicking on “DNS” under the “Network services” section.

  3. On the “DNS” page, you will see a list of managed zones. Click on the name of the zone where the CName Record vulnerability exists.

  4. In the zone details, you will find a list of DNS records. Locate the CName record that needs to be remediated.

  5. Click on the three vertical dots at the end of the CName record row and select “Edit”.

  6. In the edit record dialog box, you will see the existing configuration of the CName record. Modify the CName record to point to a valid and secure target. It is recommended to use an A record instead of a CName record whenever possible.

  7. After making the necessary changes, click on the “Save” button to save the modified CName record.

  8. Verify that the CName record has been successfully updated and is pointing to the desired target.

  9. Repeat the above steps for any other CName records that need to be remediated.

By following these steps, you will be able to remediate the CName Records vulnerability in GCP DNS using the GCP console.