elasticache-rbac-auth-enabled - AWS Config


Checks if Amazon ElastiCache replication groups have RBAC authentication enabled. The rule is NON_COMPLIANT if the Redis version is 6 or above and ‘UserGroupIds’ is missing, empty, or does not match an entry provided by the 'allowedUserGroupIDs' parameter.


Resource Types: AWS::ElastiCache::ReplicationGroup

Trigger type: Periodic

AWS Region: All supported AWS regions


allowedUserGroupIDs (Optional)
Type: CSV

A comma-separated list of User Group IDs that are approved for ElastiCache replication group access.

AWS CloudFormation template

To create AWS Config managed rules with AWS CloudFormation templates, see Creating AWS Config Managed Rules With AWS CloudFormation Templates.