Medium
S3
Regional
S3 general purpose buckets should have event notifications enabled
NIST 800-53
Description
Checks whether Amazon S3 Event Notifications are enabled on an S3 general purpose bucket. The control fails if event notifications are not enabled.
Remediation
Enable S3 Event Notifications on the bucket for relevant event types.
Steps
- Open the Amazon S3 console.
- Select the bucket and go to 'Properties' > 'Event notifications'.
- Create a notification for the events you want (e.g., ObjectCreated or ObjectRemoved).
- Save the configuration.
Compliance
NIST 800-53