AWS EC2 Instance Terraform module
Upstream version 6.4.1
7 controls from NYDFS Cybersecurity Regulation requirements
Terraform Module Source
nydfs23.compliance.tf/terraform-aws-modules/ec2-instance/awsAttached EBS volumes should have encryption enabled
ebs_attached_volume_encryption_enabled500.15(a)
Framework requirement
EC2 instances should have detailed monitoring enabled
ec2_instance_detailed_monitoring_enabled500.02(b)(3)
Framework requirement
EC2 instances should have EBS optimization enabled
ec2_instance_ebs_optimized500.02(b)(5)
Framework requirement
EC2 instances should be in a VPC
ec2_instance_in_vpc500.07
Framework requirement
EC2 instances should not have a public IP address
ec2_instance_not_publicly_accessible500.07
Framework requirement
EC2 instances should use IMDSv2
ec2_instance_uses_imdsv2500.02(b)(2)
Framework requirement
VPC Security groups should only allow unrestricted incoming traffic for authorized ports
vpc_security_group_allows_ingress_authorized_ports500.02(b)(2)
Framework requirement