Skip to main content

RDS Instance Public Access Check

ID: rule:aliyun:rds-public-access-check
Severity: high

Description

RDS instances should not be configured with public network addresses. Public access exposes databases to potential security threats from the internet.

Reason for Violation

The RDS instance is configured with public network access, which exposes the database to security risks from the internet.

Recommendation

Disable public network access for the RDS instance by setting AllocatePublicConnection to false or not configuring it.

Resource Types

  • ALIYUN::RDS::DBInstance