Low
S3
S3 general purpose buckets should use cross-Region replication
PCI DSSNIST
Description
Checks if S3 buckets have cross-Region replication enabled.
Remediation
To enable cross-Region replication for S3 buckets, follow these steps:
Steps
- Sign in to the AWS Management Console and open the Amazon S3 console.
- Choose the bucket for which you want to enable cross-Region replication.
- Click on the 'Management' tab.
- Under 'Replication', click on 'Add rule'.
- In the 'Source' section, select the source bucket or a specific prefix or tags within the bucket.
- In the 'Destination' section, select the destination bucket in a different AWS Region. Note: The destination bucket must exist before you can create a replication rule.
- Choose the IAM role that S3 can assume to replicate objects. If you don’t have a role, you can create a new one.
- Set additional options as needed, such as replicating delete markers or existing objects.
- Review the settings and click on 'Save'.
Compliance
PCI DSSNIST