elbv2-acm-certificate-required
Checks if Application Load Balancers and Network Load Balancers have listeners that are configured to use certificates from Amazon Certificate Manager (ACM). This rule is NON_COMPLIANT if at least 1 load balancer has at least 1 listener that is configured without a certificate from ACM or is configured with a certificate different from an ACM certificate.
Identifier: ELBV2_ACM_CERTIFICATE_REQUIRED
Resource Types: AWS::ElasticLoadBalancingV2::LoadBalancer
Trigger type: Periodic
Amazon Web Services Region: All supported Amazon regions except US ISO West, Asia Pacific (Jakarta), US ISO East, Middle East (UAE), Asia Pacific (Hyderabad), Asia Pacific (Osaka), Asia Pacific (Malaysia), US ISOB East, Asia Pacific (Melbourne), Amazon GovCloud (US-East), Amazon GovCloud (US-West), Israel (Tel Aviv), Canada West (Calgary), Europe (Spain), Europe (Zurich) Region
Parameters:
- AcmCertificatesAllowed (Optional)
- Type: CSV
-
Comma-separated list of certificate Amazon Resource Names (ARNs).
Amazon CloudFormation template
To create Amazon Config managed rules with Amazon CloudFormation templates, see Creating Amazon Config Managed Rules With Amazon CloudFormation Templates.