Low S3

S3 general purpose buckets should use cross-Region replication

PCI DSSNIST

Description

Checks if S3 buckets have cross-Region replication enabled.


Remediation

To enable cross-Region replication for S3 buckets, follow these steps:

Steps

  1. Sign in to the AWS Management Console and open the Amazon S3 console.
  2. Choose the bucket for which you want to enable cross-Region replication.
  3. Click on the 'Management' tab.
  4. Under 'Replication', click on 'Add rule'.
  5. In the 'Source' section, select the source bucket or a specific prefix or tags within the bucket.
  6. In the 'Destination' section, select the destination bucket in a different AWS Region. Note: The destination bucket must exist before you can create a replication rule.
  7. Choose the IAM role that S3 can assume to replicate objects. If you don’t have a role, you can create a new one.
  8. Set additional options as needed, such as replicating delete markers or existing objects.
  9. Review the settings and click on 'Save'.

Compliance

PCI DSSNIST