SHF - macpro-quickstart-serverless - master - MEDIUM - S3.4 S3 buckets should have server-side encryption enabled
mdial89f opened this issue · 0 comments
This issue was generated from Security Hub data and is managed through automation.
Please do not edit the title or body of this issue, or remove the security-hub tag. All other edits/comments are welcome.
Finding Id: arn:aws:securityhub:us-east-1:666736308865:subscription/aws-foundational-security-best-practices/v/1.0.0/S3.4/finding/53e62357-5710-4ec8-bb2a-7299eb95324a
Type of Issue:
- Security Hub Finding
Title:
S3.4 S3 buckets should have server-side encryption enabled
Id:
arn:aws:securityhub:us-east-1:666736308865:subscription/aws-foundational-security-best-practices/v/1.0.0/S3.4/finding/53e62357-5710-4ec8-bb2a-7299eb95324a
(You may use this ID to lookup this finding's details in Security Hub)
Description
This AWS control checks that your Amazon S3 bucket either has Amazon S3 default encryption enabled or that the S3 bucket policy explicitly denies put-object requests without server side encryption.
Remediation
https://docs.aws.amazon.com/console/securityhub/S3.4/remediation
AC:
- The security hub finding is resolved or suppressed, indicated by a Workflow Status of Resolved or Suppressed.