Skip to content

Latest commit

 

History

History
18 lines (13 loc) · 726 Bytes

kms-scheduled-deletion.md

File metadata and controls

18 lines (13 loc) · 726 Bytes

CloudSploit

AWS / KMS / KMS Scheduled Deletion

Quick Info

Plugin Title KMS Scheduled Deletion
Cloud AWS
Category KMS
Description Detects KMS keys that are scheduled for deletion
More Info Deleting a KMS key will permanently prevent all data encrypted using that key from being decrypted. Avoid deleting keys unless no encrypted data is in use.
AWS Link http://docs.aws.amazon.com/kms/latest/developerguide/deleting-keys.html
Recommended Action Disable the key deletion before the scheduled deletion time.

Detailed Remediation Steps