Policy: AWS > VPC > Security Group > Ingress Rules > Approved > Minimum Bitmask
Defines the smallest allowed bitmask (largest range of IP addresses) that can be granted access in any single custom security group ingress rule.
Examples: - IPv4 - 32 - Restrict rules to a single IP address - 24 - Restrict rules to a /24 CIDR block - 0 - Unlimited size - IPv6 - 256 - Restrict rules to a single IP address - 32 - Restrict rules to a /32 CIDR block
Applies to non-Turbot managed Security Groups.
Resource Types
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Controls
Policy Specification
Schema Type |
|
---|---|
Default |
|
Category
In Your Workspace
Developers
- tmod:@turbot/turbot#/control/categories/resourceApproved
- tmod:@turbot/aws-vpc-security#/policy/types/securityGroupIngressRulesApprovedMinimumBitmask
- turbot graphql policy-type --id "tmod:@turbot/aws-vpc-security#/policy/types/securityGroupIngressRulesApprovedMinimumBitmask"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/aws-vpc-security#/policy/types/securityGroupIngressRulesApprovedMinimumBitmask"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI