automated-security-response-on-aws icon indicating copy to clipboard operation
automated-security-response-on-aws copied to clipboard

Support specifying a KMS Key to be used when remediating AFSBP EC2.7 (EBS Volume Encryption)

Open climbertjh opened this issue 4 years ago • 0 comments

Is your feature request related to a problem? Please describe.

While working with the auto-remediations, I discovered a requirement to be able to specify a KMS key to be used for performing EBS Volume encryption. There is no parameter or input setting to specify this in the auto-remediation settings.

Describe the feature you'd like

Please enable a way to specify which KMS key to use for EBS volume encryption when auto-remediation is performed.

Additional context

The specification of the KMS key can, admittedly, get complex when considering multiple-accounts and multiple AWS regions over which the auto-remediation needs to be performed.

climbertjh avatar Sep 10 '21 17:09 climbertjh