Medium APIGateway Regional

API Gateway REST API stages should be configured to use SSL certificates for backend authentication

NISTISO 27001

Description

This control checks whether Amazon API Gateway REST API stages have SSL certificates configured for backend authentication.


Remediation

To configure SSL certificates for backend authentication in API Gateway REST API stages, see Generate and configure an SSL certificate for backend authentication in the API Gateway Developer Guide.

Steps

  1. Navigate to the API Gateway console.
  2. Select the API and stage you want to configure.
  3. Configure the SSL certificate for backend authentication.

Compliance

NISTISO 27001