Skip to main content

πŸ’Ό [ECS.8] Secrets should not be passed as container environment variables

  • Contextual name: πŸ’Ό [ECS.8] Secrets should not be passed as container environment variables
  • ID: /frameworks/aws-fsbp-v1.0.0/ecs/08
  • Located in: πŸ’Ό Elastic Container Service (ECS)

Description​

AWS Systems Manager Parameter Store can help you improve the security posture of your organization. We recommend using the Parameter Store to store secrets and credentials instead of directly passing them into your container instances or hard coding them into your code.

Similar​

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό CA-9(1) Internal System Connections _ Compliance Checks15
πŸ’Ό NIST SP 800-53 Revision 5 β†’ πŸ’Ό CM-2 Baseline Configuration713
πŸ’Ό PCI DSS v4.0.1 β†’ πŸ’Ό 8.6.2 Passwords/passphrases for any application and system accounts that can be used for interactive login are not hard coded in scripts, configuration/property files, or bespoke and custom source code.

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags