banyansecurity / terraform-aws-banyan-accesstier2

Apache License 2.0
1 stars 7 forks source link

EBS volumes not encrypted #17

Open wstewartlyra opened 4 weeks ago

wstewartlyra commented 4 weeks ago

There is no way enable EBS volume encryption on access tier instances with the current module. This violates CIS benchmarks and most NIST cybersecurity frameworks. This is being flagged as violations in all of our environments.

yoshiotu commented 4 weeks ago

Thank you. In case you need an immediate workaround, one option may be to enable encryption by default in your AWS account: https://docs.aws.amazon.com/ebs/latest/userguide/work-with-ebs-encr.html#encryption-by-default