πΌ [S3.2] S3 general purpose buckets should block public read access
- Contextual name: πΌ [S3.2] S3 general purpose buckets should block public read access
- ID:
/frameworks/aws-fsbp-v1.0.0/s3/02
- Located in: πΌ Simple Storage Service (S3)
Descriptionβ
Some use cases may require that everyone on the internet be able to read from your S3 bucket. However, those situations are rare. To ensure the integrity and security of your data, your S3 bucket should not be publicly readable.
Similarβ
- AWS Security Hub
- Internal
- ID:
dec-c-904cf17a
- ID:
Similar Sections (Give Policies To)β
Section | Sub Sections | Internal Rules | Policies | Flags |
---|---|---|---|---|
πΌ NIST SP 800-53 Revision 5 β πΌ AC-3 Access Enforcement | 15 | 4 | 17 | |
πΌ NIST SP 800-53 Revision 5 β πΌ AC-3(7) Access Enforcement _ Role-based Access Control | 7 | |||
πΌ NIST SP 800-53 Revision 5 β πΌ AC-4 Information Flow Enforcement | 32 | 61 | 73 | |
πΌ NIST SP 800-53 Revision 5 β πΌ AC-4(21) Information Flow Enforcement _ Physical or Logical Separation of Information Flows | 35 | 39 | ||