Control: AWS > HIPAA > CloudFront > CloudFront distributions should require encryption in transit
This control checks whether an Amazon CloudFront distribution requires viewers to use HTTPS directly or whether it uses redirection. The control fails if ViewerProtocolPolicy is set to allow-all for defaultCacheBehavior or for cacheBehaviors.
Resource Types
This control targets the following resource types:
Category
In Your Workspace
Developers
- tmod:@turbot/aws-hipaa#/control/types/cloudFrontDistributionEncryptionInTransitEnabled
- tmod:@turbot/turbot#/control/categories/complianceHipaa
- turbot graphql controls --filter "controlTypeId:tmod:@turbot/aws-hipaa#/control/types/cloudFrontDistributionEncryptionInTransitEnabled"
Get Controls
Control Type URI
Category URI
GraphQL
CLI