Open akash1810 opened 1 year ago
https://github.com/aws-samples/aws-cdk-examples/tree/master/typescript/rds might offer some inspiration.
- Multi AZ
AWS offers multi-AZ instances and multi-AZ clusters, which are slightly different. It would be great to encode a recommendation of when to make use of each type.
We don't have any (meaningful) RDS constructs yet. Some of the RDS defaults aren't very helpful, for example StorageEncrypted:
That is, making an RDS database encrypted after the fact, and retaining data, is not trivial.
We should provide an opinionated RDS construct that includes:
rds-ca-rsa2048-g1
certificate authority over the defaultrds-ca-2019
.rds-ca-rsa2048-g1
offers automatic rotation, whereasrds-ca-2019
is manual.^1