Policy: AWS > CIS v6.0 > 3 - Storage > 3.02 - Relational Database Service (RDS)
Covers security recommendations addressing Relational Database Service (RDS).
Targets
This policy targets the following resource types:
Primary Policy
This policy is used with the following primary policy:
Related Policies
- 3.02.01 - Ensure that encryption-at-rest is enabled for RDS Instances
- 3.02.02 - Ensure the Auto Minor Version Upgrade feature is enabled for RDS instances
- 3.02.03 - Ensure that RDS instances are not publicly accessible
- 3.02.04 - Ensure Multi-AZ deployments are used for enhanced availability in Amazon RDS
Controls
Setting this policy configures these controls:
- AWS > CIS v6.0 > 3 - Storage > 3.02 - Relational Database Service (RDS) > 3.02.01 - Ensure that encryption-at-rest is enabled for RDS Instances
- AWS > CIS v6.0 > 3 - Storage > 3.02 - Relational Database Service (RDS) > 3.02.02 - Ensure the Auto Minor Version Upgrade feature is enabled for RDS instances
- AWS > CIS v6.0 > 3 - Storage > 3.02 - Relational Database Service (RDS) > 3.02.03 - Ensure that RDS instances are not publicly accessible
- AWS > CIS v6.0 > 3 - Storage > 3.02 - Relational Database Service (RDS) > 3.02.04 - Ensure Multi-AZ deployments are used for enhanced availability in Amazon RDS
Policy Specification
Schema Type | |
|---|---|
Default | |
Valid Values [YAML] |
|
Examples [YAML] |
|
Category
In Your Workspace
Developers
- tmod:@turbot/cis#/control/categories/cis
- tmod:@turbot/aws-cisv6-0#/policy/types/s0302
- turbot graphql policy-type --id "tmod:@turbot/aws-cisv6-0#/policy/types/s0302"
- turbot graphql policy-settings --filter "policyTypeId:tmod:@turbot/aws-cisv6-0#/policy/types/s0302"
Get Policy TypeGet Policy Settings
Category URI
Policy Type URI
GraphQL
CLI