Low CloudFront

CloudFront distributions should use custom SSL/TLS certificates

NISTISO 27001

Description

Verifies that CloudFront distributions use custom SSL/TLS certificates rather than the default CloudFront certificate.


Remediation

To use a custom SSL/TLS certificate for a CloudFront distribution, refer to the Amazon CloudFront Developer Guide.

Steps

  1. Open the Amazon CloudFront console.
  2. Choose the distribution to update.
  3. Navigate to the 'Distribution Settings' and select the 'SSL Certificate' section.
  4. Choose a custom SSL/TLS certificate to associate with the distribution.
  5. Save changes.

Compliance

NISTISO 27001