Policy: GCP > CIS v2.0 > 4 - Virtual Machines > 4.08 - Ensure Compute Instances Are Launched With Shielded VM Enabled
Configures auditing against a CIS Benchmark item.
Level: 2
To defend against advanced threats and ensure that the boot loader and firmware on your VMs are signed and untampered, it is recommended that Compute instances are launched with Shielded VM enabled.
Resource Types
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Controls
- GCP > CIS v2.0
- GCP > CIS v2.0 > 4 - Virtual Machines > 4.08 - Ensure Compute Instances Are Launched With Shielded VM Enabled
- GCP > CIS v2.0 > 4 - Virtual Machines
Policy Specification
Schema Type |
|
---|---|
Default |
|
Valid Values [YAML] |
|
Category
In Your Workspace
Developers
- tmod:@turbot/cis#/control/categories/v070502
- tmod:@turbot/gcp-cisv2-0#/policy/types/r0408
- turbot graphql policy-type --id "tmod:@turbot/gcp-cisv2-0#/policy/types/r0408"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/gcp-cisv2-0#/policy/types/r0408"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI