Security group rules should include a description for auditing purposes.
Simplifies auditing, debugging, and managing security groups.
Impact
Recommended Actions
Follow the appropriate remediation steps below to resolve the issue.
Add descriptions for all security groups rules
1
2
3
4
5
6
7
8
9
Resources:GoodSecurityGroup:Type:AWS::EC2::SecurityGroupProperties:GroupDescription:Limits security group egress trafficSecurityGroupEgress:- CidrIp:127.0.0.1/32Description:Can connect to loopbackIpProtocol:"-1"