Medium EC2 Regional

EC2 Transit Gateways should not automatically accept VPC attachment requests

NISTISO 27001

Description

Checks whether Amazon EC2 Transit Gateways are configured not to automatically accept VPC attachment requests.


Remediation

To ensure compliance with this control, modify the Transit Gateway settings to disable the automatic acceptance of VPC attachment requests.

Steps

  1. Sign in to the AWS Management Console and open the Amazon VPC console at https://console.aws.amazon.com/vpc/.
  2. In the navigation pane, click on 'Transit Gateways'.
  3. Select the Transit Gateway you want to modify.
  4. In the 'Actions' dropdown menu, select 'Modify Auto Accept Attachments'.
  5. In the 'Modify Auto Accept Attachments' window, set 'Auto Accept Shared Attachments' to 'Disable'.
  6. Click 'Save' to apply the changes.

Compliance

NISTISO 27001