Skip to content

Commit b0b9d7b

Browse files
authored
feat: Add require ebs encryption scp (#60)
1 parent b4ff650 commit b0b9d7b

1 file changed

Lines changed: 12 additions & 0 deletions

File tree

catalog/ec2-policies.yaml

Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -294,3 +294,15 @@
294294
- false
295295
resources:
296296
- "*"
297+
298+
- sid: "RequireEBSEncryption"
299+
effect: "Deny"
300+
actions:
301+
- "ec2:CreateVolume"
302+
condition:
303+
- test: "Bool"
304+
variable: "ec2:Encrypted"
305+
values:
306+
- false
307+
resources:
308+
- "*"

0 commit comments

Comments
 (0)