Severity : High
Description: This control ensures that OCI Object Storage buckets are not publicly accessible. Monitoring and alerting on publicly accessible buckets will help in identifying changes to the security posture and thus reduces risk for sensitive data being leaked. It is recommended that no bucket be publicly accessible.
Remediation Steps:
Perform following to update bucket access policies :
Login to the OCI console at https://www.oracle.com/cloud/sign-in.html .
Open the navigation menu and click Storage.
Under Object Storage, click Buckets.
Click the bucket name to see the bucket Visibility.
Click Edit Visibility and change the visibility to Private.
Click Save Changes.
Important:
Reference: