More Info:

Buckets must have a Retention Policy Configured along with a Retention Period, that is specified by the User (must be greater than 0)

Risk Level

Low

Address

Security

Compliance Standards

CBP

Triage and Remediation

Remediation

To remediate the retention policy misconfiguration in GCP using the GCP console, follow these steps:

  1. Open the GCP console and navigate to the Cloud Storage section.

  2. Click on the bucket that you want to remediate.

  3. Click on the “Edit Bucket” button at the top of the page.

  4. Scroll down to the “Retention Policy” section.

  5. Click on the “Add Retention Policy” button.

  6. Set the “Minimum retention period” to the desired duration.

  7. Check the “Locked” checkbox to prevent any changes to the retention policy.

  8. Click on the “Save” button to apply the changes.

  9. Verify that the retention policy has been successfully applied by checking the “Retention Policy” section.

By following these steps, the retention policy misconfiguration will be remediated for the selected GCP bucket.