More Info:

Ensure Cloud Monitoring monitors storage ACL based object access count.

Risk Level

Medium

Address

Security

Compliance Standards

CBP

Triage and Remediation

Remediation

To remediate the misconfiguration “Cloud Monitoring Should Monitor Storage ACL Based Object Access Count” for GCP using the GCP console, you can follow the below steps:

  1. Go to the GCP console and navigate to the Cloud Storage section.

  2. Select the bucket for which you want to enable ACL based object access count monitoring.

  3. Click on the “Edit bucket permissions” button located on the top of the page.

  4. Under the “Add members” section, add the email address of the user or service account for which you want to enable ACL based object access count monitoring.

  5. Select the “Storage Object Viewer” role for the added member.

  6. Click on the “Add” button to add the member to the bucket’s permissions.

  7. Go to the Cloud Monitoring section of the GCP console.

  8. Click on the “Uptime checks” tab and then click on the “Create uptime check” button.

  9. Enter the required details for the uptime check, such as the name, check frequency, and target.

  10. Under the “Advanced options” section, enable the “Log matched log entries” option.

  11. Under the “Log-based metrics” section, select “Cloud Storage” as the log source and then select the log name for the bucket for which you enabled ACL based object access count monitoring.

  12. Set the required filters for the log-based metric and then click on the “Create” button.

By following these steps, you can remediate the misconfiguration “Cloud Monitoring Should Monitor Storage ACL Based Object Access Count” for GCP using the GCP console.

Additional Reading: