More Info:

Ensure that “Restrict VM IP Forwarding” policy is enforced at the GCP organization level.

Risk Level

Medium

Address

Security, Operational Maturity

Compliance Standards

CISGCP, CBP

Triage and Remediation

Remediation

To remediate the misconfiguration “Restrict Virtual Machine IP Forwarding” in GCP using the GCP console, you can follow the below steps:

  1. Login to the GCP console with your credentials.

  2. Navigate to the Compute Engine section from the left-hand side menu.

  3. Click on the “VM instances” option in the submenu.

  4. Select the virtual machine instance for which you want to restrict IP forwarding.

  5. Click on the “Edit” button at the top of the page.

  6. Scroll down to the “Network interfaces” section and click on the “Edit” button for the relevant network interface.

  7. In the “IP forwarding” section, select the “Off” option.

  8. Click on the “Save” button to apply the changes.

  9. Repeat the above steps for all the virtual machine instances in your GCP account.

By following the above steps, you can remediate the misconfiguration “Restrict Virtual Machine IP Forwarding” in GCP using the GCP console.