slb-listener-https-enabled

更新时间:
复制 MD 格式

Checks whether an HTTPS listener is enabled on the specified port for a Server Load Balancer (SLB) instance.

Scenario

HTTPS listeners for SLB instances can encrypt connections and block unauthorized access.

Risk level

Default risk level: high.

You can change the risk level as required when you apply this rule.

Compliance evaluation logic

  • If an HTTPS listener is enabled on the specified port for an SLB instance, the evaluation result is compliant.
  • If no HTTPS listener is enabled on the specified port for an SLB instance, the evaluation result is non-compliant. For more information about how to correct the non-compliant configuration, see Non-compliance remediation.

Rule details

ItemDescription
Rule nameslb-listener-https-enabled
Rule IDslb-listener-https-enabled
TagSLB and LoadBalancer
Automatic remediationNot supported
Trigger typeConfiguration change
Supported resource typeSLB instance
Input parameterlistenerPort. Default value: 443.

Non-compliance remediation

Enable an HTTPS listener on the specified port for the SLB instance. For more information, see Add an HTTPS listener.