Skip to main content

πŸ’Ό [ECS.8] Secrets should not be passed as container environment variables

  • Contextual name: πŸ’Ό [ECS.8] Secrets should not be passed as container environment variables
  • ID: /frameworks/aws-fsbp-v1.0.0/ecs/08
  • Located in: πŸ’Ό Elastic Container Service (ECS)

Description​

AWS Systems Manager Parameter Store can help you improve the security posture of your organization. We recommend using the Parameter Store to store secrets and credentials instead of directly passing them into your container instances or hard coding them into your code.

Similar​

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό CA-9(1) Internal System Connections _ Compliance Checks20
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό CM-2 Baseline Configuration723
πŸ’Ό PCI DSS v4.0.1 β†’ πŸ’Ό 8.6.2 Passwords/passphrases for any application and system accounts that can be used for interactive login are not hard coded in scripts, configuration/property files, or bespoke and custom source code.

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags