awslabs / landing-zone-accelerator-on-aws

Deploy a multi-account cloud foundation to support highly-regulated workloads and complex compliance requirements.
https://aws.amazon.com/solutions/implementations/landing-zone-accelerator-on-aws/
Apache License 2.0
559 stars 447 forks source link

Secure Parameter Store Strings #339

Open OllionDavidCunliffe opened 11 months ago

OllionDavidCunliffe commented 11 months ago

Is your feature request related to a problem? Please describe. Not sure if it's available or not but current configuration for anything that the accelerator builds stores the parameters in parameter store for the various CFT that gets built. I'm running vulnerability scans and they require that we secure the strings in place of plain text.

Describe the feature you'd like The ability to supply a configuration to change the behavior of the LZA solution to encrypt the parameter store values it uses for the various operations within AWS.

bhkhatri221 commented 11 months ago

Hello @2Wdavidcunliffe, thank you for filing a feature request with the Landing Zone Accelerator team! I've put in a feature request for this particular use case. Our team will evaluate the applicability of this request for a future release.

We will keep this issue open for tracking purposes and keep you aware of any status updates going forward. Thank you for supporting Landing Zone Accelerator!