Checks whether all system disks in each ECS instance launch template are encrypted. If so, the evaluation result is Compliant.
Scenarios
Encrypting the system disks in an ECS instance launch template can effectively improve data security and reliability, and ensure that compliance requirements can be met.
Risk level
Default risk level: medium.
When you apply this rule, you can change the risk level based on your business requirements.
Compliance evaluation logic
If all system disks in each ECS instance launch template are encrypted, the evaluation result is Compliant.
If a system disk in an ECS instance launch template is not encrypted, the evaluation result is Non-compliant.
Rule details
Parameter | Description |
Rule name | ecs-launch-template-version-system-disk-encrypted |
Rule identifier | |
Tag | Encrypted |
Automatic remediation | Not supported |
Trigger type | Configuration change |
Supported resource type | ECS instance launch template |
Input parameter | None |