Medium WorkSpaces Regional

WorkSpaces root volumes should be encrypted at rest

FSBP

Description

Confirms that WorkSpaces root volumes are encrypted at rest.


Remediation

To enable encryption at rest for WorkSpaces root volumes, configure the WorkSpace to use encrypted root volumes.

Steps

  1. Open the Amazon WorkSpaces console.
  2. Select the WorkSpace that needs root volume encryption enabled.
  3. Stop the WorkSpace if it's running.
  4. Modify the WorkSpace configuration.
  5. Enable 'Root volume encryption' in the WorkSpace settings.
  6. Save the configuration and restart the WorkSpace if needed.

Compliance

FSBP