ec2-spot-fleet-request-ct-encryption-at-rest
Checks if Amazon EC2 Spot Fleet request launch parameters set encrypted to True for attached EBS volumes. The rule is NON_COMPLIANT if any EBS volumes has encrypted set to False. The rule does not evaluate spot fleet requests using launch templates.
Identifier: EC2_SPOT_FLEET_REQUEST_CT_ENCRYPTION_AT_REST
Resource Types: AWS::EC2::SpotFleet
Trigger type: Configuration changes
Amazon Web Services Region: All supported Amazon regions except Asia Pacific (New Zealand), Asia Pacific (Thailand), Asia Pacific (Malaysia), Mexico (Central), Asia Pacific (Taipei), Canada West (Calgary) Region
Parameters:
- None
Amazon CloudFormation template
To create Amazon Config managed rules with Amazon CloudFormation templates, see Creating Amazon Config Managed Rules With Amazon CloudFormation Templates.