automated-security-response-on-aws
automated-security-response-on-aws copied to clipboard
Support specifying a KMS Key to be used when remediating AFSBP EC2.7 (EBS Volume Encryption)
Is your feature request related to a problem? Please describe.
While working with the auto-remediations, I discovered a requirement to be able to specify a KMS key to be used for performing EBS Volume encryption. There is no parameter or input setting to specify this in the auto-remediation settings.
Describe the feature you'd like
Please enable a way to specify which KMS key to use for EBS volume encryption when auto-remediation is performed.
Additional context
The specification of the KMS key can, admittedly, get complex when considering multiple-accounts and multiple AWS regions over which the auto-remediation needs to be performed.