AWS EKS Terraform module
Upstream version 21.24.1
5 controls from NIST Cybersecurity Framework v2.0 requirements
Terraform Module Source
nistcsf.compliance.tf/terraform-aws-modules/eks/awsCloudWatch log groups should have retention period of at least 365 days
cloudwatch_log_group_retention_period_365RC.RP-06
Framework requirement
EC2 launch templates should use Instance Metadata Service Version 2 (IMDSv2)
ec2_launch_template_default_version_uses_imdsv2PR.AC-3
Framework requirement
Log groups should have encryption at rest enabled
log_group_encryption_at_rest_enabledPR.DS-1
Framework requirement
SQS queues should have encryption at rest enabled
sqs_queue_encrypted_at_restPR.DS-01
Framework requirement
SQS queues should be encrypted with KMS CMK
sqs_queue_encrypted_with_kms_cmkPR.DS-01
Framework requirement