More Info:

Determines if TCP port 3389 for RDP is open to the public

Risk Level

Medium

Address

Security

Compliance Standards

SOC2, PCIDSS, ISO27001, HIPAA, CISGCP, CBP, HITRUST, GDPR, NISTCSF, FedRAMP

Triage and Remediation

Remediation

To remediate the RDP port being open misconfiguration in GCP using the GCP console, please follow the below steps:

  1. Login to the GCP console and navigate to the Compute Engine section.

  2. Select the instance(s) for which you want to remediate the misconfiguration.

  3. Click on the “Edit” button at the top of the page to edit the instance settings.

  4. Scroll down to the “Firewall” section and click on “Edit” next to the default-allow-rdp rule.

  5. In the “Protocols and ports” section, uncheck the box next to “RDP” to disable access to the RDP port.

  6. Click on the “Save” button to save the changes.

  7. Verify that the RDP port is no longer open by running a port scan on the instance(s).

That’s it! By following the above steps, you have successfully remediated the misconfiguration of the RDP port being open in GCP.

Additional Reading: