Prisma Cloud Compute Cloud Native Network Firewall (CNNF) automatically monitors layer 4 (TCP) intercontainer communications. Enforcement policies must be created.
Overview
Finding ID
Version
Rule ID
IA Controls
Severity
V-253526
CNTR-PC-000140
SV-253526r960804_rule
High
Description
Network segmentation and compartmentalization are important parts of a comprehensive defense-in-depth strategy. CNNF works as an east-west firewall for containers. It limits damage by preventing attackers from moving laterally through the environment when they have already compromised the perimeter.
Satisfies: SRG-APP-000039-CTR-000110, SRG-APP-000384-CTR-000915