Medium DMS Regional

DMS replication instances should have automatic minor version upgrade enabled

NIST 800-53PCI DSS v4.0.1PCI DSS v6.3.3

Description

This control checks if automatic minor version upgrade is enabled for an AWS DMS replication instance. The control fails if automatic minor version upgrade isn't enabled for a DMS replication instance. DMS provides automatic minor version upgrade to each supported replication engine so that you can keep your replication instance up-to-date. Minor versions can introduce new software features, bug fixes, security patches, and performance improvements. By enabling automatic minor version upgrade on DMS replication instances, minor upgrades are applied automatically during the maintenance window or immediately if the Apply changes immediately option is chosen.


Remediation

Enable automatic minor version upgrade for your DMS replication instances to ensure they stay up-to-date with the latest security patches and improvements.

Steps

  1. Navigate to the AWS DMS console
  2. Go to the Replication instances section
  3. Select the replication instance that needs auto minor version upgrade
  4. Modify the replication instance
  5. In the 'Maintenance' section, enable 'Auto minor version upgrade'
  6. Choose whether to apply changes immediately or during the maintenance window
  7. Save the configuration changes
  8. Verify that automatic minor version upgrade is now enabled

Compliance

NIST 800-53PCI DSS v4.0.1PCI DSS v6.3.3