Policy Packs

Permissions

The Enforce Encryption at Rest Is Enabled for AWS S3 Buckets policy pack requires 5 permissions:

  • s3:DeleteBucketEncryption
  • s3:DeleteBucketPolicy
  • s3:PutBucketEncryption
  • s3:PutBucketPolicy
  • s3:PutEncryptionConfiguration