Loading controls...
Benchmark: ElastiCache
Description
This benchmark provides a set of controls that detect Terraform AWS ElastiCache resources deviating from security best practices.
Usage
Browse dashboards and select ElastiCache:
steampipe dashboard
Or run the benchmarks in your terminal:
steampipe check terraform_aws_compliance.benchmark.elasticache
Snapshot and share results via Steampipe Cloud:
steampipe loginsteampipe check --share terraform_aws_compliance.benchmark.elasticache
Controls
- ElastiCache cluster should have subnet group
- ElastiCache Redis cluster should have auto minor version upgrade enabled
- ElastiCache Redis cluster automatic backup should be enabled with retention period of 15 days or greater
- ElastiCache replication group should be encrypted with KMS CMK
- ElastiCache replication group should be encrypted at rest
- ElastiCache replication group should be encrypted at transit
- ElastiCache replication group should be encrypted at transit