Skip to main content

CCC.VPC.C01: Restrict Default Network Creation

Control ID:CCC.VPC.C01
Title:Restrict Default Network Creation
Objective:Restrict the automatic creation of default virtual networks and related resources during subscription initialization to avoid insecure default configurations and enforce custom network policies.
Control Family:
Network Security

Related Threats

IDTitleDescriptionExternal MappingsCapability MappingsControl Mappings
CCC.VPC.TH01Unauthorized Access via Insecure Default NetworksDefault network configurations may include insecure settings and open firewall rules,leading to unauthorized access and potential data breaches.
1
1
0

Related Capabilities

IDTitleDescription
CCC.VPC.F01Isolated Custom Network CreationAbility to create a virtual network that is isolated from other users of the same public cloud.

Guideline Mappings

Reference IDEntry IDStrengthRemarks
NIST-CSF
PR.AC-5
0
-
CCM
TVM-02
0
-
ISO_27001
2013 A.12.3.1
0
-
NIST_800_53
SC-7
0
-

Assessment Requirements

IDDescriptionApplicability
CCC.VPC.C01.TR01When a subscription is created, the subscription MUST NOT contain default network resources.
tlp-amber
tlp-red