Skip to content

Files

Latest commit

 

History

History
39 lines (28 loc) · 955 Bytes

aws-elasticache-add-description-for-security-group.md

File metadata and controls

39 lines (28 loc) · 955 Bytes

Pattern: Missing description for AWS ElastiCache security group/rule

Issue: -

Description

Security groups and security group rules should include a description for auditing purposes. This simplifies auditing, debugging, and managing security groups.

Resolution: Add descriptions for all security groups and rules.

Examples

Example of incorrect code:

resource "aws_security_group" "bar" {
  name = "security-group"
}

resource "aws_elasticache_security_group" "bad_example" {
  name                 = "elasticache-security-group"
  security_group_names = [aws_security_group.bar.name]
  description = ""
}

Example of correct code:

resource "aws_security_group" "bar" {
  name = "security-group"
}

resource "aws_elasticache_security_group" "good_example" {
  name                 = "elasticache-security-group"
  security_group_names = [aws_security_group.bar.name]
  description = "something"
}