standard
turbot/aws_compliance

Pipeline: Correct RDS DB instances with encryption at rest disabled

Send notifications for RDS DB instances with encryption at rest disabled.

Run the pipeline

To run this pipeline from your terminal:

flowpipe pipeline run aws_compliance.pipeline.correct_rds_db_instances_with_encryption_at_rest_disabled \
--arg 'items=<list(object({
title = string
db_instance_identifier = string
snapshot_identifier = string
aws_managed_kms_key_arn = string
region = string
conn = string
}))>'

Use this pipeline

To call this pipeline from your pipeline, use a step:

step "pipeline" "step_name" {
pipeline = aws_compliance.pipeline.correct_rds_db_instances_with_encryption_at_rest_disabled
args = {
items = <list(object({
title = string
db_instance_identifier = string
snapshot_identifier = string
aws_managed_kms_key_arn = string
region = string
conn = string
}))>
}
}

Params

NameTypeRequiredDescriptionDefault
items
list(object({
      title                   = string
      db_instance_identifier  = string
      snapshot_identifier     = string
      aws_managed_kms_key_arn = string
      region                  = string
      conn                    = string
    }))
YesA collection of detected resources to run corrective actions against.-
notifier
notifier
YesThe name of the notifier to use for sending notification messages.notifier.default
notification_level
string
verbose, info, error
YesThe verbosity level of notification messages to send.info

Outputs

This pipeline has no outputs.

Tags

category = Compliance
folder = Internal
mod = aws
service = AWS/RDS