πΌ [PCA.1] AWS Private CA root certificate authority should be disabled
- Contextual name: πΌ [PCA.1] AWS Private CA root certificate authority should be disabled
- ID:
/frameworks/aws-fsbp-v1.0.0/pca/01
- Located in: πΌ Private Certificate Authority (CA)
Descriptionβ
With AWS Private CA, you can create a CA hierarchy that includes a root CA
and subordinate CAs. You should minimize the use of the root CA for daily
tasks, especially in production environments. The root CA should only be used
to issue certificates for intermediate CAs. This allows the root CA to be
stored out of harm's way while the intermediate CAs perform the daily task of
issuing end-entity certificates.
Similarβ
- AWS Security Hub
- Internal
Similar Sections (Give Policies To)β
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|