api-gw-ssl-enabled
Checks if a REST API stage uses an SSL certificate. The rule is NON_COMPLIANT if the REST API stage does not have an associated SSL certificate.
Note
This rule returns NOT_APPLICABLE if the GetIntegration API returns an integration type other than HTTP as type.
This rule evaluates the SSL certificate configuration in API Gateway stage settings, not the actual deployed state.
Identifier: API_GW_SSL_ENABLED
Resource Types: AWS::ApiGateway::Stage
Trigger type: Configuration changes
Amazon Web Services Region: All supported Amazon regions except Asia Pacific (Taipei) Region
Parameters:
- CertificateIDs (Optional)
- Type: CSV
-
Comma-separated list of client certificate IDs configured on a REST API stage.
Amazon CloudFormation template
To create Amazon Config managed rules with Amazon CloudFormation templates, see Creating Amazon Config Managed Rules With Amazon CloudFormation Templates.