GoogleCloudPlatform / GoogleCloudPlatform/pubsec-declarative-toolkit
allow enabling the fortigate's serial port only when needed
Open
enhancement
fortinet
Networking
security-controls
ssc
- Dominant language
- Shell
- Stars
- 36
- Forks
- 26
- PR merge metrics
- No merged PRs in 30d
Description
as a platform admin/hub admin/ fortigate admin, I want to allow enabling the fortigate's serial port (compute.instances.setmetadata) only by a specific group and only for a specific amount of time so that the serial port is not permanently enabled thus strengthening the security of the appliance.
In order to further mitigate risk, that specific group should leverage just-in-time access.
_Originally posted by @davelanglois-ssc in https://github.com/GoogleCloudPlatform/pubsec-declarative-toolkit/pull/283#discussion_r1134584579_
Contributor guide
Assessment
This issue has not been assessed yet.