Skip to main content

KMS key automatic rotation enabled

ID: rule:aliyun:kms-key-rotation-enabled
Severity: medium

Description

KMS user master key has automatic rotation enabled, considered compliant. Service keys and externally imported keys are not applicable.

Reason for Violation

KMS key does not have automatic rotation enabled

Recommendation

Enable automatic rotation for KMS key to enhance security by regularly rotating encryption keys

Resource Types

  • ALIYUN::KMS::Key