Google Cloud Storage Bucket modified

gcp

Classification:

compliance

이 페이지는 아직 한국어로 제공되지 않으며 번역 작업 중입니다. 번역에 관한 질문이나 의견이 있으시면 언제든지 저희에게 연락해 주십시오.

Goal

Detect when an administrative change to a GCS Bucket has been made. This could change the retention policy or bucket lock. For more information, see the GCS Bucket Lock docs.

Strategy

This rule lets you monitor GCS bucket admin activity audit logs to determine if a bucket has been updated with the following method:

  • storage.buckets.update

Triage and response

Review the bucket to ensure that it is properly configured.