More Info:

Ensure that “Restrict VPC Peering Usage” policy is enforced for your GCP organizations.

Risk Level

Medium

Address

Security, Operational Maturity

Compliance Standards

CBP

Triage and Remediation

Remediation

To remediate the misconfiguration of not restricting VPC Peering Usage in GCP using GCP Console, follow these steps:

  1. Open the GCP Console and navigate to the VPC Network page.

  2. Select the VPC network that needs to be remediated.

  3. Click on the “Edit” button at the top of the page.

  4. Scroll down to the “VPC Network Peering” section and click on “Edit”.

  5. In the “Peering” tab, select the peering connection that needs to be restricted.

  6. In the “Details” section, click on the “Edit” button.

  7. In the “Restrict VPC network peering” section, select the “Only allow peering from the following VPC networks” option.

  8. Select the VPC networks that are allowed to peer with this VPC network.

  9. Click on the “Save” button to apply the changes.

  10. Repeat the above steps for all the VPC networks that need to be remediated.

Once you have completed these steps, VPC Peering Usage will be restricted to only the allowed VPC networks.