Skip to main content

Networking / Loadbalancer

CCC Load Balancer Capabilities Controls

Version: DEV

IDTitleObjectiveControl FamilyThreat MappingsGuideline MappingsAssessment Requirements
CCC.LB.CN01Enforce and Detect Rate LimitingDetect and throttle malicious or excessive requests to prevent downstream resource exhaustion and brute-force activity.Networking
2
6
2
CCC.LB.CN02Auto-Scale Load Balancer CapacityExpand load-balancer capacity to maintain availability during traffic spikes.Resource
1
2
1
CCC.LB.CN04Enforce Distribution PoliciesEnsure traffic-splitting weights and algorithms are modified only by trusted identities.Access
1
2
1
CCC.LB.CN05Validate Session AffinityConfigure session persistence to minimise fixation and hijacking risks.Networking
1
2
1
CCC.LB.CN06Secure Health-Check TelemetryMonitor health-check endpoints for tampering and alert on abnormal status changes.Observability
1
2
1
CCC.LB.CN07Scrub Sensitive HeadersRemove headers that disclose internal details or software versions from HTTP responses.Networking
1
2
1
CCC.LB.CN08Automate Certificate RenewalMaintain valid TLS certificates by automating renewal and deployment before expiry.Encryption
1
2
1
CCC.LB.CN09Restrict Management API AccessLimit load-balancer API calls to authorised identities and trusted networks.Access
1
2
1