MEDIUM

Ensure private subnets are used for backend resources

Databases and application servers should be in private subnets.

Security Impact

Resources in public subnets are directly exposed to the internet.

How to Remediate

Create private subnets without internet gateway routes. Use NAT gateway for outbound.

Affected Resources

OCI::Core::Subnet

Compliance Frameworks

SOC 2PCI-DSSHIPAA

How TigerGate Helps

TigerGate continuously monitors your Oracle Cloud environment to detect and alert on this misconfiguration. Here's what our platform does for this specific check:

  • Continuous Scanning

    Automatically scans all Oracle Cloud Virtual Cloud Network (VCN) resources across your Oracle Cloud tenancies every hour

  • Instant Alerts

    Get notified via Slack, email, or webhooks when this misconfiguration is detected

  • One-Click Remediation

    Fix this issue directly from the TigerGate dashboard with our guided remediation

  • Compliance Evidence

    Automatically collect audit evidence for SOC 2, PCI-DSS, HIPAA compliance

  • Drift Detection

    Get alerted if this configuration drifts back to an insecure state after remediation

Check Details

Check ID
oracle-networking-7
Service
Oracle Cloud Virtual Cloud Network (VCN)
Category
Network Design
Severity
MEDIUM

Automate This Check

TigerGate automatically scans your Oracle Cloud environment for this and 50+ other security checks.

Start Free Trial