turbot/terraform_aws_compliance

Query: elasticache_replication_group_encryption_in_transit_enabled_auth_token

Usage

powerpipe query terraform_aws_compliance.query.elasticache_replication_group_encryption_in_transit_enabled_auth_token

Steampipe Tables

SQL

select
address as resource,
case
when (attributes_std ->> 'transit_encryption_enabled')::boolean and (attributes_std ->> 'auth_token') is not null then 'ok'
else 'alarm'
end status,
split_part(address, '.', 2) || case
when (attributes_std ->> 'transit_encryption_enabled')::boolean and (attributes_std ->> 'auth_token') is not null then ' encrypted in transit and auth token set'
when (attributes_std ->> 'transit_encryption_enabled')::boolean and (attributes_std ->> 'auth_token') is null then ' encrypted in transit but auth token not set'
when (attributes_std ->> 'auth_token') is not null then 'not encrypted in transit but auth token set'
else ' not encrypted in transit and auth token not set'
end || '.' as reason
, path || ':' || start_line
from
terraform_resource
where
type = 'aws_elasticache_replication_group';

Controls

The query is being used by the following controls: