Skip to main content

Networking / VPC / Controls / DEV

Restrict Default Network Creation

CCC.VPC.CN01 · Networking

Restrict the automatic creation of default virtual networks and related resources during subscription initialization to avoid insecure default configurations and enforce custom network policies.

Related Capabilities

IDTitleDescription
CCC.VPC.CP01Isolated Custom Network CreationAbility to create a virtual network that is isolated from other users of the same public cloud.

Related Threats

IDTitleDescription
CCC.VPC.TH01Unauthorized Access via Insecure Default NetworksDefault network configurations may include insecure settings and open firewall rules,leading to unauthorized access and potential data breaches.

Assessment Requirements

IDTextApplicability
CCC.VPC.CN01.AR01When a subscription is created, the subscription MUST NOT contain default network resources.tlp-amber, tlp-red

Guideline Mappings

FrameworkIDRemarks
NIST-CSFPR.AC-5
CCMTVM-02
ISO_270012013 A.12.3.1
NIST_800_53SC-7