Enterprise-CMCS/macpro-quickstart-serverless

SHF - macpro-quickstart-serverless - master - HIGH - S3.8 S3 Block Public Access setting should be enabled at the bucket-level

Closed this issue · 0 comments


This issue was generated from Security Hub data and is managed through automation.
Please do not edit the title or body of this issue, or remove the security-hub tag. All other edits/comments are welcome.
Finding Id: arn:aws:securityhub:us-east-1:666736308865:subscription/aws-foundational-security-best-practices/v/1.0.0/S3.8/finding/d67eb934-8504-4a20-8b81-c9e452ff962d


Type of Issue:

  • Security Hub Finding

Title:

S3.8 S3 Block Public Access setting should be enabled at the bucket-level

Id:

arn:aws:securityhub:us-east-1:666736308865:subscription/aws-foundational-security-best-practices/v/1.0.0/S3.8/finding/d67eb934-8504-4a20-8b81-c9e452ff962d
(You may use this ID to lookup this finding's details in Security Hub)

Description

This control checks if Amazon S3 buckets have bucket level public access blocks applied. This control fails if any of the bucket level settings are set to "false" public: ignorePublicAcls, blockPublicPolicy, blockPublicAcls, restrictPublicBuckets.

Remediation

https://docs.aws.amazon.com/console/securityhub/S3.8/remediation

AC:

  • The security hub finding is resolved or suppressed, indicated by a Workflow Status of Resolved or Suppressed.