AWS_CloudFormation_3

Ensure CloudFormation Stack Termination Protection is enabled

Description

CloudFormation stacks have Termination Protection feature in order to protect them from being accidentally deleted. The safety feature can be enabled when you create the CloudFormation stack or for existing stacks using the AWS API (UpdateTerminationProtection command). Once enabled, if you attempt to delete an AWS CloudFormation stack, the deletion fails and the stack will remain unchanged.

Remediation

1. Log in to the AWS Management Console.

2. Click on the CloudFormation dashboard.

3. Select the CloudFormation stack that you want to protect from accidental deletion.

4. Click on the Actions dropdown button from the CloudFormation dashboard and select Change termination protection.

5. Inside Enable termination protection dialog box, click Yes.

Service

CloudFormation

Severity

Medium

Compliance

Mapping

We are now live on AWS Marketplace.
The integrated view of your cloud infrastructure is now easier than ever!