Checks whether deletion protection is enabled for an Application Load Balancer (ALB) instance.
Scenarios
Enable deletion protection for an ALB instance to prevent accidental deletion and business interruption.
Risk level
Default risk level: high.
You can change the risk level when you apply this rule.
Compliance evaluation logic
- If deletion protection is enabled for the ALB instance, the evaluation result is compliant.
- If deletion protection is disabled for the ALB instance, the evaluation result is non-compliant. To fix this, see Non-compliance remediation.
Rule details
| Item | Description |
| Rule name | slb-delete-protection-enabled |
| Rule ID | alb-delete-protection-enabled |
| Tag | LoadBalancer and ALB |
| Automatic remediation | Not supported |
| Trigger type | Configuration change |
| Supported resource type | ALB instance |
| Input parameter | None |
Non-compliance remediation
Enable deletion protection for the ALB instance. For more information, see Manage ALB instances.