Enterprise-CMCS/macpro-quickstart-serverless

SHF - macpro-quickstart-serverless - master - MEDIUM - S3.4 S3 buckets should have server-side encryption enabled

mdial89f opened this issue · 0 comments


This issue was generated from Security Hub data and is managed through automation.
Please do not edit the title or body of this issue, or remove the security-hub tag. All other edits/comments are welcome.
Finding Id: arn:aws:securityhub:us-east-1:666736308865:subscription/aws-foundational-security-best-practices/v/1.0.0/S3.4/finding/53e62357-5710-4ec8-bb2a-7299eb95324a


Type of Issue:

  • Security Hub Finding

Title:

S3.4 S3 buckets should have server-side encryption enabled

Id:

arn:aws:securityhub:us-east-1:666736308865:subscription/aws-foundational-security-best-practices/v/1.0.0/S3.4/finding/53e62357-5710-4ec8-bb2a-7299eb95324a
(You may use this ID to lookup this finding's details in Security Hub)

Description

This AWS control checks that your Amazon S3 bucket either has Amazon S3 default encryption enabled or that the S3 bucket policy explicitly denies put-object requests without server side encryption.

Remediation

https://docs.aws.amazon.com/console/securityhub/S3.4/remediation

AC:

  • The security hub finding is resolved or suppressed, indicated by a Workflow Status of Resolved or Suppressed.