All Products
Search
Document Center

Cloud Config:sls-logstore-enabled-encrypt

Last Updated:Nov 10, 2025

Checks whether data encryption is enabled for a Logstore in Log Service.

Scenarios

Log Service allows you to use Key Management Service (KMS) to encrypt data for secure storage and static protection.

Risk level

Default risk level: medium.

You can change the risk level as required when you apply this rule.

Compliance evaluation logic

  • If data encryption is enabled for the Logstore in Log Service, the evaluation result is compliant.
  • If data encryption is disabled for the Logstore in Log Service, the evaluation result is non-compliant. For more information about how to correct the non-compliant configuration, see Non-compliance remediation.

Rule details

ItemDescription
Rule namesls-logstore-enabled-encrypt
Rule IDsls-logstore-enabled-encrypt
TagSLS and LogStore
Automatic remediationNot supported
Trigger typeConfiguration change and periodic execution
Time interval24 hours
Supported resource typeLog Service flow logs
Input parameterNone

Non-compliance remediation

Enable data encryption for the Logstore in Log Service. For more information, see Data encryption.