Low
RDS
Regional
An RDS event notifications subscription should be configured for critical database security group events
NIST
Description
Checks if an RDS event notifications subscription is configured for critical database security group events. This check also fetches the tags associated with each RDS event subscription.
Remediation
To configure an RDS event notifications subscription for critical database security group events, follow these steps:
Steps
- Log in to the AWS Management Console and open the Amazon RDS console.
- In the navigation pane, click on 'Event subscriptions'.
- Click on 'Create event subscription'.
- Provide a name for the subscription in the 'Name' field.
- Under 'Source type', select 'DB security group'.
- In the 'Event categories' section, select the critical event categories related to database security groups for which you want to receive notifications.
- Under 'Send notifications to', enter the email addresses or SNS topic ARNs where notifications should be sent.
- Choose the specific RDS security groups for which you want to receive notifications.
- Review the settings and click 'Create' to establish the event notifications subscription.
Compliance
NIST