Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

Version 1 Current »

Severity: Low

Description: This control ensures that all the Database Cluster snapshots (manual or automatic) are encrypted in order to keep the data in the snapshots secure.All database snapshots on AWS should be encrypted in order to keep the customer data secure from unauthorized access. UnEncrypted snapshots can be restored to view the data stored in the DB Cluster.

Remediation Steps:

Perform following to update DocumentDB master user name:

  1. Login to the AWS Management Console at https://console.aws.amazon.com.

  2. Navigate to DocumentDB console.

  3. In the Navigation pane, click on Snapshots.

  4. Click on the Snapshot to encrypt, click Actions button.

  5. Under Actions, choose Copy Snapshot.

  6. Choose your Destination Region, and then enter your New DB Snapshot Identifier.

  7. Select Copy Tags if needed.

  8. Under Encryption, select Enable Encryption.

  9. Select your Master Key from the list, and then choose Copy Snapshot.

Important:

Reference:

  • No labels