Skip to main content

Networking / VPC / Controls / DEV

Restrict VPC Peering to Authorized Accounts

CCC.VPC.CN03 · Networking

Ensure VPC peering connections are only established with explicitly authorized destinations to limit network exposure and enforce boundary controls.

Related Capabilities

IDTitleDescription
CCC.VPC.CP11Connectivity Options - VPC PeeringEstablishing a private connection between two VPCs to communicate seamlessly.

Related Threats

IDTitleDescription
CCC.VPC.TH03Unauthorized Network Access Through VPC PeeringUnauthorized VPC peering connections can allow network traffic between untrusted or unapproved subscriptions, leading to potential data exposure or exfiltration.

Assessment Requirements

IDTextApplicability
CCC.VPC.CN03.AR01When a VPC peering connection is requested, the service MUST prevent connections from VPCs that are not explicitly allowed.tlp-green, tlp-amber, tlp-red

Guideline Mappings

FrameworkIDRemarks
NIST-CSFPR.AC-3
CCMIVS-01
ISO_270012013 A.13.1.3
NIST_800_53AC-4