alb-desync-mode-check
Checks if an Application Load Balancer (ALB) is configured with a user defined desync mitigation mode. The rule is NON_COMPLIANT if ALB desync mitigation mode does not match with the user defined desync mitigation mode.
Identifier: ALB_DESYNC_MODE_CHECK
Resource Types: AWS::ElasticLoadBalancingV2::LoadBalancer
Trigger type: Configuration changes
Amazon Web Services Region: All supported Amazon regions except US ISO West, US ISO East, Asia Pacific (Malaysia), US ISOB East, Canada West (Calgary) Region
Parameters:
- desyncMode
- Type: CSV
-
Comma-separated list, in which customers can choose max 2 values among - 'defensive', 'strictest', and 'monitor'.
Amazon CloudFormation template
To create Amazon Config managed rules with Amazon CloudFormation templates, see Creating Amazon Config Managed Rules With Amazon CloudFormation Templates.