AWS S3 bucket Terraform module
Upstream version 5.15.4
8 controls from HIPAA Omnibus Rule 2013 requirements
Terraform Module Source
hipaa.compliance.tf/terraform-aws-modules/s3-bucket/awsS3 buckets should have cross-region replication enabled
s3_bucket_cross_region_replication_enabled164.312(a)(2)(ii)
Framework requirement
S3 buckets should have default encryption enabled using KMS
s3_bucket_default_encryption_enabled_kms164.314(b)(2)(iv)
Framework requirement
S3 buckets should have logging enabled
s3_bucket_logging_enabled164.308(a)(1)(ii)(D)
Framework requirement
S3 buckets should not be accessible to all authenticated users
s3_bucket_not_accessible_to_all_authenticated_user164.308(a)(1)(ii)(B)
Framework requirement
S3 buckets should have object lock enabled
s3_bucket_object_lock_enabled164.308(a)(1)(ii)(B)
Framework requirement
S3 buckets should have versioning enabled
s3_bucket_versioning_enabled164.308(a)(1)(ii)(B)
Framework requirement
S3 public access should be blocked at account level
s3_public_access_block_account164.308(a)(1)(ii)(B)
Framework requirement
S3 public access should be blocked at bucket level
s3_public_access_block_bucket164.312(e)(1)
Framework requirement