Medium
S3
S3 general purpose buckets should have block public access settings enabled
CISPCI DSSNISTISO 27001HIPAA
Description
Checks if the S3 Block Public Access setting is enabled at the account level for all S3 buckets in the account.
Remediation
Amazon S3 block public access prevents the application of any settings that allow public access to data within S3 buckets. Follow these steps to edit block public access settings for all the S3 buckets in your AWS account:
Steps
- Sign in to the AWS Management Console and open the Amazon S3 console at https://console.aws.amazon.com/s3/.
- Choose Block Public Access settings for this account.
- Choose Edit to change the block public access settings for all the buckets in your AWS account.
- Choose the settings that you want to change, and then choose Save changes.
- When you're asked for confirmation, enter 'confirm'. Then choose Confirm to save your changes.
Compliance
CISPCI DSSNISTISO 27001HIPAA