A notification email titled "Overly Permissive Compute Gateway Firewall Rule Detected" was received.
A notification banner including "Overly Permissive Compute Gateway Firewall Rule Detected" is seen in the VMC on AWS Console.
Environment
VMware Cloud on AWS
Cause
The VMC on AWS team continuously scans SDDCs.
When an overly-permissive inbound Compute Gateway firewall rule is seen, notifications will be sent to the Organization by email, notification banner, or both.
These types of rules can compromise the workload virtual machines and applications in the SDDC.
An overly-permissive inbound Compute Gatway rule is:
Source=Any, Destination=Any, Services=Any, Applied To: All uplinks/Internet, Action=Allow