Skip to main content

Root and User Workspaces volumes should be encrypted

SeverityExploitabilityProvidersCategories
HIGHHIGHAWSDATA, PERMISSION

Description

Amazon WorkSpaces is a fully managed desktop virtualization service for Windows and Linux that enables you to access resources from any supported device.

The storage volumes should always be encrypted to protect the data if accesses are compromised.

Impact

Potential data exposureVisible in logsUser interaction requiredPrivileges required
TrueFalseFalseTrue

Not encrypting data could lead to data leak in case of an attack.

Remediation guidelines

Enable encryption for Root and User volummes from the WorkSpaces console, providing a KMS key.

References

How can I help you ?