Skip to content

AWS DMS replication instance automatic version upgrade disabled

Description

When AWS Database Migration Service (AWS DMS) supports a new version, you can upgrade your replication instances to it. There are two kinds of upgrades: major version upgrades and minor version upgrades. Minor upgrades helps maintain a secure and stable DMS with minimal impact on the replication. For this reason, we recommend that your automatic minor upgrade is enabled. Minor version upgrades only occur automatically if a minor upgrade replaces an unsafe version, such as a minor upgrade that contains bug fixes for a previous version.

Code Example

shell
{
 "aws dms modify-replication-instance \\
--region ${region} \\
--replication-instance-arn ${resource_arn} \\
--auto-minor-version-upgrade \\
--apply-immediately",
}
---
////

=== Fix - Buildtime


*CloudFormation* 




[source,yaml]

Remediation

CLI Command

Rule Details

FieldValue
IDIAC-0270
SeverityLOW
IaC TypeTerraform
FrameworksTerraform
Checkov IDCKV_AWS_222

References