Skip to main content

Core / Ccc / Controls / v2025.10

Restrict Snapshot and Replica Access

CCC.Core.CN19 · Data Resilience

Ensure that backup snapshots, replicas, and cross-region copies of the service or a child resource are not more accessible than the primary resource.

Related Capabilities

IDTitleDescription
CCC.Core.CP08Data ReplicationThe service automatically replicates data across multiple deployments simultaneously with parity, or may be configured to do so.
CCC.Core.CP12RecoveryThe service can be reverted to a previous state by providing a compatible backup or snapshot identifier.
CCC.Core.CP21Resource ReplicationThe service may be configured to replicate child resources across multiple deployments.

Related Threats

IDTitleDescription
CCC.Core.TH05Interference with Replication ProcessesMisconfigured or manipulated replication processes may lead to data being copied to unintended locations, delayed, modified, or not being copied at all. This could lead to compromised data confidentiality and integrity, potentially also affecting recovery processes and data availability.

Assessment Requirements

IDTextApplicability
CCC.Core.CN19.AR01When a snapshot or replica of the service or a child resource is created, the service MUST apply access controls that are equivalent to or stricter than those on the primary resource.tlp-clear, tlp-green, tlp-amber, tlp-red
CCC.Core.CN19.AR02When cross-account or cross-subscription replication is configured, the service MUST restrict replica access to an explicit allowlist of authorized destination accounts or projects.tlp-amber, tlp-red