cis-aws-foundations-6.1.1
Ensure EBS volume encryption is enabled in all regions
1.21k repo starsObserved in 1 repos
DevOps & Security
Browse reusable Agent Skills, each with a clear purpose and practical guidance.
Ensure EBS volume encryption is enabled in all regions
Ensure CIFS access is restricted to trusted networks to prevent unauthorized access
Ensure no Network ACLs allow ingress from 0.0.0.0/0 to remote server administration ports
Ensure no security groups allow ingress from 0.0.0.0/0 to remote server administration ports
Ensure no security groups allow ingress from ::/0 to remote server administration ports
Ensure the default security group of every VPC restricts all traffic
Ensure routing tables for VPC peering are least access
Ensure that the EC2 Metadata Service only allows IMDSv2
Ensure VPC Endpoints are used for access to AWS Services