EC2: DescribeVolumes - 'Current available volume list'

Information

An Amazon EBS volume is a durable, block-level storage device that you can attach to a single EC2 instance. You can partition the Amazon EBS volume, create software RAID arrays, format the partitions with any file system you choose, and ultimately protect the data on the Amazon EBS volume.

NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.

Solution

Review the available volumes. If any are incorrect or undocumented they should be investigated.

See Also

https://d1.awsstatic.com/whitepapers/Security/AWS_Security_Best_Practices.pdf

Item Details

Category: ACCESS CONTROL, AUDIT AND ACCOUNTABILITY, PHYSICAL AND ENVIRONMENTAL PROTECTION, SYSTEM AND SERVICES ACQUISITION, SYSTEM AND COMMUNICATIONS PROTECTION, SYSTEM AND INFORMATION INTEGRITY

References: 800-53|AC-2, 800-53|AC-3, 800-53|AC-4, 800-53|AC-6, 800-53|AC-11, 800-53|AU-13, 800-53|PE-19, 800-53|SA-8, 800-53|SC-28, 800-53|SI-7

Plugin: amazon_aws

Control ID: ecc253baa2d38617e3f53ee5022585fd4b8f211844fcbc20a222b6c1c7aa1121