Skip to main content

Repository → 💼 CIS AWS v6.0.0 → 💼 3 Storage → 💼 3.1 Simple Storage Service (S3)

💼 3.1.4 Ensure that S3 is configured with 'Block Public Access' enabled (Automated)

  • ID: /frameworks/cis-aws-v6.0.0/03/01/04

Description

Amazon S3 provides Block public access (bucket settings) and Block public access (account settings) to help you manage public access to Amazon S3 resources. By default, S3 buckets and objects are created with public access disabled. However, an IAM principal with sufficient S3 permissions can enable public access at the bucket and/or object level. While enabled, Block public access (bucket settings) prevents an individual bucket and its contained objects from becoming publicly accessible. Similarly, Block public access (account settings) prevents all buckets and their contained objects from becoming publicly accessible across the entire account.

Similar

  • Sections
    • /frameworks/cis-aws-v5.0.0/02/01/04

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS AWS v5.0.0 → 💼 2.1.4 Ensure that S3 is configured with 'Block Public Access' enabled (Automated)1no data

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS AWS v5.0.0 → 💼 2.1.4 Ensure that S3 is configured with 'Block Public Access' enabled (Automated)1no data

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlagsCompliance

Policies (1)

PolicyLogic CountFlagsCompliance
🛡️ AWS S3 Bucket is not configured to block public access🟢1🟢 x6no data