Low
Lambda
Regional
Lambda functions should be in a VPC
PCI DSSNISTISO 27001
Description
Checks whether a Lambda function is in a VPC. It does not evaluate the VPC subnet routing configuration to determine public reachability.
Remediation
To configure an existing function to connect to private subnets in your VPC, see Configuring VPC access in the AWS Lambda Developer Guide. Choose at least two private subnets for high availability and at least one security group that meets the connectivity requirements of the function.
Steps
- Review the VPC configuration of your Lambda functions.
- Update the functions to connect to private subnets in your VPC.
Compliance
PCI DSSNISTISO 27001