Skip to main content

πŸ’Ό [GuardDuty.9] GuardDuty RDS Protection should be enabled

  • Contextual name: πŸ’Ό [GuardDuty.9] GuardDuty RDS Protection should be enabled
  • ID: /frameworks/aws-fsbp-v1.0.0/guardduty/09
  • Located in: πŸ’Ό GuardDuty

Description​

RDS Protection in GuardDuty analyzes and profiles RDS login activity for potential access threats to your Amazon Aurora databases (Aurora MySQL-Compatible Edition and Aurora PostgreSQL-Compatible Edition). This feature allows you to identify potentially suspicious login behavior. RDS Protection doesn't require additional infrastructure; it is designed so as not to affect the performance of your database instances. When RDS Protection detects a potentially suspicious or anomalous login attempt that indicates a threat to your database, GuardDuty generates a new finding with details about the potentially compromised database.

Similar​

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlags
πŸ’Ό PCI DSS v4.0.1 β†’ πŸ’Ό 11.5.1 Intrusion-detection and/or intrusion-prevention techniques are used to detect and/or prevent intrusions into the network.11

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlags