Skip to main content

💼 8.2.1 Using strong cryptography, render all authentication credentials unreadable during transmission and storage on all system components.

Description

Empty...

Similar

  • Sections
    • /frameworks/pci-dss-v4.0/08/03/02
    • /frameworks/aws-fsbp-v1.0.0/codebuild/01
    • /frameworks/aws-fsbp-v1.0.0/codebuild/02
  • Internal
    • ID: dec-c-2f346432

Similar Sections (Take Policies From)

SectionSub SectionsInternal RulesPoliciesFlags
💼 AWS Foundational Security Best Practices v1.0.0 → 💼 [CodeBuild.1] CodeBuild Bitbucket source repository URLs should not contain sensitive credentials11
💼 AWS Foundational Security Best Practices v1.0.0 → 💼 [CodeBuild.2] CodeBuild project environment variables should not contain clear text credentials
💼 PCI DSS v4.0 → 💼 8.3.2 Strong cryptography is used to render all authentication factors unreadable during transmission and storage on all system components.614

Similar Sections (Give Policies To)

SectionSub SectionsInternal RulesPoliciesFlags
💼 PCI DSS v4.0 → 💼 8.3.2 Strong cryptography is used to render all authentication factors unreadable during transmission and storage on all system components.614

Sub Sections

SectionSub SectionsInternal RulesPoliciesFlags

Policies (14)

PolicyLogic CountFlags
📝 AWS CodeBuild Project Bitbucket Source Location URL contains credentials 🟢1🟢 x6
📝 AWS S3 Bucket Policy is not set to deny HTTP requests 🟢1🟢 x6
📝 Azure App Service HTTPS Only configuration is not enabled 🟢1🟢 x6
📝 Azure MySQL Flexible Server require_secure_transport Parameter is not set to ON 🟢1🟢 x6
📝 Azure PostgreSQL Flexible Server require_secure_transport Parameter is not set to ON 🟢1🟢 x6
📝 Azure PostgreSQL Single Server Enforce SSL Connection is not set enabled 🟢1🟢 x6
📝 Azure PostgreSQL Single Server Infrastructure Double Encryption is not enabled 🟢1🟢 x6
📝 Azure Storage Account Secure Transfer Required is not enabled 🟢1🟢 x6
📝 Google BigQuery Dataset is not encrypted with Customer-Managed Encryption Key (CMEK) 🟢1🟢 x6
📝 Google BigQuery Table is not encrypted with Customer-Managed Encryption Key (CMEK) 🟢1🟢 x6
📝 Google Dataproc Cluster is not encrypted using Customer-Managed Encryption Key 🟢1🟢 x6
📝 Google GCE Disk for critical VMs is not encrypted with Customer-Supplied Encryption Key (CSEK) 🟢1🟢 x6
📝 Google GCE Instance Block Project-Wide SSH Keys is not enabled 🟢1🟢 x6
📝 Google GCE Instance Confidential Compute is not enabled 🟢1🟢 x6