Description
Without a description, a security group’s purpose and scope must be inferred from its name. This is a documentation issue; the description does not change access permissions.
Potential impact
The group’s purpose may be misunderstood during cleanup or changes.
Remediation
Add a brief description to nifcloud_security_group identifying its workload and purpose.
Examples
These excerpts add only a description. Availability-zone settings and access rules are omitted.
Before
hcl
resource "nifcloud_security_group" "web" {
group_name = "web"
}
After
hcl
resource "nifcloud_security_group" "web" {
group_name = "web"
description = "Security group for web servers"
}