Ensure that Google Cloud CDN backend bucket origins enforce HTTPS using SSL/TLS certificates in order to handle encrypted traffic. This helps you to protects the integrity and confidentiality of the transmitted information.
Without HTTPS, any data transmitted over a network is vulnerable to eavesdropping and Man-In-The-Middle (MITM) attacks. The risk becomes even higher when the cloud application is working with sensitive data such as health and personal records, credentials and credit card numbers. With HTTPS, the traffic is encrypted over SSL/TLS, and the application and user data is secured in transit. Using an SSL/TLS certificate for your Cloud CDN backend bucket origin enhances security, adds trust, boosts SEO, facilitates compliance, and enhances reputation. With an SSL/TLS certificate, your application is fortified with robust security measures, inspires confidence among users, and aligns with industry regulations.
Audit
To determine if your Cloud CDN backend bucket origins are using SSL/TLS certificates, perform the following actions:
Remediation / Resolution
To ensure that your Cloud CDN backend service origins enforce HTTPS using SSL/TLS certificates, perform the following operations:
References
- Google Cloud Platform (GCP) Documentation
- SSL certificates overview
- Set up a backend bucket
- External HTTP(S) load balancer overview
- Request routing to a multi-region global external HTTP(S) load balancer (classic)
- Set up a global external HTTP(S) load balancer (classic) with a managed instance group backend