Skip to main content

ECS In-Use Disk Encryption

ID: rule:aliyun:ecs-in-use-disk-encrypted
Severity: medium

Description

ECS data disks should have encryption enabled to protect data at rest. Encrypted disks use KMS keys to encrypt data, ensuring data security and compliance with regulatory requirements.

Reason for Violation

The ECS disk does not have encryption enabled, which may expose sensitive data to unauthorized access.

Recommendation

Enable encryption for the ECS disk by setting the Encrypted property to true.

Resource Types

  • ALIYUN::ECS::Disk