Skip to content

AWS DLM-cross region schedules are not encrypted

Description

As a best practice enable encryption for your AWS DLM-cross region schedules to improve data security without making changes to your business or applications.

Code Example

go
resource "aws_cloudfront_response_headers_policy" "pass" {
  name    = "test"

  security_headers_config {
    strict_transport_security {
      access_control_max_age_sec = 31536000
      include_subdomains         = true
      override                   = true
      preload                    = true
    }
  }
}

Remediation

Terraform

Rule Details

FieldValue
IDIAC-0303
SeverityLOW
IaC TypeTerraform
FrameworksTerraform
Checkov IDCKV_AWS_255

References