GoogleCloudPlatform / GoogleCloudPlatform/pubsec-declarative-toolkit

allow enabling the fortigate's serial port only when needed

Open
#307 1 comment 0 reactions 0 assignees View on GitHub
enhancement fortinet Networking security-controls ssc
Dominant language
Shell
Stars
36
Forks
26
PR merge metrics
No merged PRs in 30d

Description

as a platform admin/hub admin/ fortigate admin, I want to allow enabling the fortigate's serial port (compute.instances.setmetadata) only by a specific group and only for a specific amount of time so that the serial port is not permanently enabled thus strengthening the security of the appliance.

In order to further mitigate risk, that specific group should leverage just-in-time access.

_Originally posted by @davelanglois-ssc in https://github.com/GoogleCloudPlatform/pubsec-declarative-toolkit/pull/283#discussion_r1134584579_

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.