More Info:

Determines if TCP port 1521 for Oracle is open to the public

Risk Level

Medium

Address

Security

Compliance Standards

SOC2, GDPR, HITRUST, NISTCSF, PCIDSS, FedRAMP

Triage and Remediation

Remediation

To remediate the Oracle Port Should Not Be Open misconfiguration for GCP using GCP console, follow these steps:

  1. Log in to the GCP console (https://console.cloud.google.com/).

  2. Select the project that contains the affected resource.

  3. In the navigation menu on the left-hand side, click on “Compute Engine” and then select “VM instances”.

  4. Locate the instance that has the open Oracle port and click on its name to open its details page.

  5. Click on the “Edit” button at the top of the page to edit the instance settings.

  6. Scroll down to the “Firewall” section and click on “Management, security, disks, networking, sole tenancy”.

  7. Under the “Firewall” section, click on “Network interfaces”.

  8. Click on “default” to expand the network interface settings.

  9. In the “Firewall rules” section, locate the rule that allows traffic on the Oracle port (default is 1521).

  10. Click on the trashcan icon next to the rule to delete it.

  11. Click on the “Save” button at the bottom of the page to save the changes.

  12. Verify that the Oracle port is no longer open by running a port scan or checking the instance’s firewall rules.

By following these steps, you have successfully remediated the Oracle Port Should Not Be Open misconfiguration for GCP using GCP console.

Additional Reading: