rds-cluster-encrypted-at-rest - AWS Config

rds-cluster-encrypted-at-rest

Checks if an Amazon Relational Database Service (Amazon RDS) cluster is encrypted at rest. The rule is NON_COMPLIANT if an Amazon RDS cluster is not encrypted at rest.

Identifier: RDS_CLUSTER_ENCRYPTED_AT_REST

Resource Types: AWS::RDS::DBCluster

Trigger type: Configuration changes

AWS Region: All supported AWS regions except US ISO West (Northern California), China (Beijing), US ISO East, Asia Pacific (Malaysia), US ISOB East (Ohio), AWS GovCloud (US-East), AWS GovCloud (US-West), Canada West (Calgary) Region

Parameters:

None

AWS CloudFormation template

To create AWS Config managed rules with AWS CloudFormation templates, see Creating AWS Config Managed Rules With AWS CloudFormation Templates.