Checks whether all data disks in each ECS instance launch template are encrypted. If so, the evaluation result is Compliant.
Scenarios
Encrypting the data disks in an ECS instance launch template can effectively improve data security and reliability, and ensure that compliance requirements can be met.
Risk level
Default risk level: medium.
When you apply this rule, you can change the risk level based on your business requirements.
Compliance evaluation logic
If all data disks in each ECS instance launch template are encrypted, the evaluation result is Compliant.
If a data disk in an ECS instance launch template is not encrypted, the evaluation result is Non-compliant.
Rule details
Parameter | Description |
Rule name | ecs-launch-template-version-data-disk-encrypted |
Rule identifier | |
Tag | Encrypted |
Automatic remediation | Not supported |
Trigger type | Configuration change |
Supported resource type | ECS instance launch template |
Input parameter | None |