More Info:

Ensure that PubSub Subscriptions have enabled DLQ

Risk Level

Low

Address

Reliability, Operational Maturity, Security

Compliance Standards

HIPAA, SOC2, PCIDSS, NIST

Triage and Remediation

Remediation

Sure, here are the step-by-step instructions to remediate the misconfiguration “PubSub Subscriptions Should Have Dead Letter Queue Enabled” in GCP using the GCP console:

  1. Open the GCP console and navigate to the Pub/Sub page.
  2. Select the subscription that needs to be remediated.
  3. Click on the “Edit” button at the top of the page.
  4. Scroll down to the “Delivery” section and click on “Add Dead-letter topic”.
  5. In the “Dead-letter topic” field, enter the name of the topic where dead-letter messages should be sent.
  6. Click on the “Create” button to create the dead-letter topic.
  7. Set the maximum delivery attempts for the subscription by entering a value in the “Maximum delivery attempts” field.
  8. Click on the “Save” button to save the changes.

Congratulations, you have now remediated the misconfiguration “PubSub Subscriptions Should Have Dead Letter Queue Enabled” in GCP using the GCP console.

Additional Reading: