💼 [Opensearch.1] OpenSearch domains should have encryption at rest enabled
- ID:
/frameworks/aws-fsbp-v1.0.0/opensearch/01
Description
For an added layer of security for sensitive data, you should configure your
OpenSearch Service domain to be encrypted at rest. When you configure
encryption of data at rest, AWS KMS stores and manages your encryption keys.
To perform the encryption, AWS KMS uses the Advanced Encryption Standard
algorithm with 256-bit keys (AES-256).
Similar
- AWS Security Hub
- Internal
Similar Sections (Give Policies To)
Sub Sections
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|
Policies (1)