Amazon_RDS_3

Ensure RDS event subscriptions are enabled for DB security groups

Description

AWS Relational Database Services offers customers a managed database engine solution for hosting customer created databases which can allow for a reduction in operational burden on customers.
RDS event subscriptions provide notification of selected event changes at a DB security group level.

Remediation

Using the Amazon unified CLI:

  • Create a new event subscription for DB Security Group events:
    aws rds create-event-subscription –subscription-name <rds_event_subscription> –sns-topic-arn <sns_topic_arn> –source-type db-security-group –event-categories <rds_events> –source-ids <events_source_ids> –enabled

Service

RDS

Severity

Low

Compliance

Mapping

We are now live on AWS Marketplace.
The integrated view of your cloud infrastructure is now easier than ever!