nhs-england-tools / terraform-aws-opennext

🧱 💻 ☁️ A Terraform module for deploying a Next.js application built with OpenNext to AWS
MIT License
90 stars 11 forks source link

spinecli 906 905 kms key rotation and s3bucket deny non https #5

Closed eesa456 closed 1 year ago

eesa456 commented 1 year ago

Description

Pen Test Security Fixes: Enable KMS Key Rotation and S3 Deny on non-HTTPS traffic

Context

Pen Test Security Issues Resolved by this

Type of changes

Checklist


Sensitive Information Declaration

To ensure the utmost confidentiality and protect your and others privacy, we kindly ask you to NOT including PII (Personal Identifiable Information) / PID (Personal Identifiable Data) or any other sensitive data in this PR (Pull Request) and the codebase changes. We will remove any PR that do contain any sensitive information. We really appreciate your cooperation in this matter.