What to Provide
A screenshot demonstrating all users with privileged access to modify production firewall rules/security groups.
Evidence Format
Screenshots or exported images in a common image file type such as .jpg, .png, or .pdf.
Additional Guidance
The evidence should demonstrate all users that can:
Create, modify, or delete firewalls and security groups
Grant privileged access to firewalls or security groups
NOTE: If access to production firewalls/security groups is governed via the CSP console, please (1) note in the "Evidence Description" section of the ER all of the specific groups/role permissions that would provide a user privileged access to the production firewalls/security groups through the CSP console authentication mechanism, and (2) provide a screenshot of all users assigned to the associated groups/role permissions that would provide privileged access to production firewalls/security groups.
Related Articles
Associated Unified Control ID | Associated Framework Control |
CTRL-9 | LCL-32 |