Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Enable SSE-s3 encryption on S3 buckets by default #517

Merged
merged 2 commits into from
Dec 20, 2022

Conversation

rddefauw
Copy link
Contributor

@rddefauw rddefauw commented Dec 2, 2022

Which issue is resolved by this Pull Request:
Resolves #

Description of your changes:

For both terraform and manifest deployments, turn on SSE-S3 bucket encryption by default.

I also added a small security section to the documentation describing the default encryption setting and discussing when using SSE-KMS might be preferable.

Testing:

  • [x ] Unit tests pass
  • e2e tests pass
  • Details about new tests (If this PR adds a new feature)
  • Details about any manual tests performed

Manually deployed using both terraform and manifests and confirmed that S3 bucket encryption is on.

By submitting this pull request, I confirm that my contribution is made under the terms of the Apache 2.0 license.

@ryansteakley ryansteakley merged commit 3f31898 into awslabs:main Dec 20, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants