cis-aws-euc-2.15
Ensure primary interface ports for Workspaces are not open to all inbound traffic
1.21k repo starsObserved in 1 repos
DevOps & Security
Browse reusable Agent Skills, each with a clear purpose and practical guidance.
Ensure primary interface ports for Workspaces are not open to all inbound traffic
Ensure FIPS Endpoint encryption is enabled for WorkSpaces
Ensure WorkSpaces API requests flow through a VPC Endpoint
Ensure WorkSpace volumes are encrypted
Ensure WorkSpaces are deployed in their own virtual private cloud (VPC)
Ensure WorkSpaces traffic is controlled and routed through a NAT Gateway
Ensure Web Access to Workspaces is Disabled
Ensure access is limited to trusted devices
Ensure the default IP access control group is disassociated
Ensure CloudWatch is set up for WorkSpaces