AWS RDS Terraform module

Upstream version 7.2.0
9 controls from FFIEC Cybersecurity Assessment Tool requirements

Terraform Module Source

ffiec.compliance.tf/terraform-aws-modules/rds/aws
Log group retention period should be at least 365 days
cloudwatch_log_group_retention_period_365
Framework requirement
RDS DB instance and cluster enhanced monitoring should be enabled
rds_db_instance_and_cluster_enhanced_monitoring_enabled
Framework requirement
RDS DB instance automatic minor version upgrade should be enabled
rds_db_instance_automatic_minor_version_upgrade_enabled
Framework requirement
RDS DB instance backup should be enabled
rds_db_instance_backup_enabled
Framework requirement
RDS DB instances should have deletion protection enabled
rds_db_instance_deletion_protection_enabled
Framework requirement
RDS DB instance encryption at rest should be enabled
rds_db_instance_encryption_at_rest_enabled
Framework requirement
Database logging should be enabled
rds_db_instance_logging_enabled
Framework requirement
RDS DB instance multiple az should be enabled
rds_db_instance_multiple_az_enabled
Framework requirement
RDS DB instances should prohibit public access
rds_db_instance_prohibit_public_access
Framework requirement