Unused Network Access Control Lists should be removed

Cette page n'est pas encore disponible en français, sa traduction est en cours.
Si vous avez des questions ou des retours sur notre projet de traduction actuel, n'hésitez pas à nous contacter.

Description

This check verifies if there are any unused network access control lists (ACLs).

It examines the configuration of the AWS::EC2::NetworkAcl resource and identifies the connections of the network ACL.

If the only connection is the VPC of the network ACL, the check fails.

If there are other connections listed, the check passes.

Remediation

Please refer to the Amazon VPC User Guide for guidance on removing an unused network ACL. Note that you cannot delete the default network ACL or an ACL that is linked to subnets.