How can I check, if my Aurora databases are performing transit encryption?

dcpeach ✭✭✭✭✭
edited March 24 in Asset Management
All Aurora databases must at a minimum use TLS 1.2v encryption.


  • FIND (aws_db_instance |aws_rds_cluster) with engine ~= 'aurora' as db that uses Configuration 
    with parameter.ssl_min_protocol_version!='TLSv1.2' AND parameter.ssl!=1 as dbconf
    RETURN, dbconf.tag.AccountName, dbconf.parameter.ssl_min_protocol_version, dbconf.parameter.ssl, dbconf.parameter.rds.force_ssl, db.tag.classification,, db.arn, db.region

