VPC Subnet Automatically Assigns IP Addresses
Overview
When this is enabled, all new resources in the subnet will be assigned a public IP address when created. This could result in inadvertent Internet exposure of resources, even when security groups are configured properly. Instances and other resources should only have an IP address assigned when needed.
Vendor
AWS
Cloud Service
EC2
Related Controls
EC2.15
References
https://docs.aws.amazon.com/vpc/latest/userguide/vpc-ip-addressing.html#subnet-public-ip, https://docs.aws.amazon.com/vpc/latest/userguide/vpc-ip-addressing.html#subnet-public-ip-disabled
Severity
3
Item Types
AWS::EC2::Subnet