Skip to content
Menu
Cloud Gal 42
  • Home
Cloud Gal 42

Best Practices on OCI Part 2: Network

October 22, 2020May 13, 2021 by admin

Here are some key recommendations for configuring your virtual Network on Oracle Cloud Infrastructure –

  1. Ensure no security lists or network security groups allow ingress from 0.0.0.0/0 to port 22 – Removing unfettered connectivity to remote console services, such as Secure Shell (SSH), reduces a server’s exposure to risk.
  2. Ensure no security lists or network security groups allow ingress from 0.0.0.0/0 to port 3389 – Removing unfettered connectivity to remote console services, such as Remote Desktop Protocol (RDP), reduces a server’s exposure to risk.
  3. Ensure the default security list of every VCN restricts all traffic except ICMP
  4. Ensure public facing Web Applications are front-ended by Load Balancers and Web Application Firewall
  5. Ensure all critical workloads are deployed on private subnets
  6. Ensure Bastion hosts have Virus and Malware protection deployed and regularly updated
  7. Ensure all traffic from the Internet is filtered through a firewall with IDS and IPS capabilities

Next article in the series – Best Practices on OCI Part 3: Logging & Monitoring

Related

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • Role of AI/ML in Cybersecurity
  • QuickGuide: Security on OCI
  • The Cloud Management Plane
  • Secure Installation and Configuration of Virtualized Cloud Datacenters
  • Cloud Datacenter: Hardware-specific Security Configuration Requirements

Recent Comments

  • Rafael on Installing Debian on OCI
  • Jorge on Installing Debian on OCI
  • admin on Installing Debian on OCI
  • Andreas on Installing Debian on OCI
  • admin on Installing Debian on OCI

Archives

  • December 2022
  • February 2022
  • September 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • February 2021
  • January 2021
  • November 2020
  • October 2020

Categories

  • aws
  • bcdr
  • cloud
  • cloudsecurity
  • compliance
  • informationsecurity
  • oracle
  • pci
  • QuickGuide
  • security
©2025 Cloud Gal 42 | Powered by WordPress and Superb Themes!