Medium
CloudFront
CloudFront distributions should use custom SSL/TLS certificates
NISTISO 27001
Description
Checks whether CloudFront distributions are using custom SSL/TLS certificates instead of the default CloudFront certificate.
Remediation
To use a custom SSL/TLS certificate for a CloudFront distribution, refer to the Amazon CloudFront Developer Guide.
Steps
- Open the Amazon CloudFront console.
- Choose the distribution to update.
- Navigate to the 'Distribution Settings' and select the 'SSL Certificate' section.
- Choose a custom SSL/TLS certificate to associate with the distribution.
- Save changes.
Compliance
NISTISO 27001