This rule checks whether SSL encryption is enabled for MongoDB instances.
Scenarios
Enabling SSL encryption for MongoDB instances protects data in transit and prevents sensitive information from being intercepted or tampered with.
Risk level
Default risk level: high.
When you apply this rule, you can change the risk level based on your business requirements.
Detection logic
MongoDB instances with SSL encryption enabled are considered compliant. Instances that do not support SSL encryption, such as Serverless instances, are considered not applicable.
Rule details
|
Parameter |
Description |
|
Rule name |
Enable SSL encryption for MongoDB instances |
|
Rule template identity |
|
|
Automatic remediation |
Not supported |
|
Trigger Type |
Configuration change, 24-hour cycle |
|
Resource type evaluated by the rule |
ACS::MongoDB::DBInstance |
|
Input parameter |
None |
Remediation guidance
For more information, see Configure SSL encryption.