💼 [Opensearch.1] OpenSearch domains should have encryption at rest enabled
- ID:
/frameworks/aws-fsbp-v1.0.0/opensearch/01
Stats
not available
Description
For an added layer of security for sensitive data, you should configure your OpenSearch Service domain to be encrypted at rest. When you configure encryption of data at rest, AWS KMS stores and manages your encryption keys. To perform the encryption, AWS KMS uses the Advanced Encryption Standard algorithm with 256-bit keys (AES-256).
Similar
- AWS Security Hub
- Internal
- ID:
dec-c-d02f559d
- ID:
Similar Sections (Give Policies To)
Sub Sections
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|
Policies (1)
| Policy | Logic Count | Flags | Compliance |
|---|---|---|---|
| 🛡️ AWS OpenSearch Domain is not encrypted at rest🟢 | 1 | 🟢 x6 | no data |