CloudFormation guard rules template for AWS Secrets Manager resources

The following rules are included: 

  • Cross-Region Replication Enabled

let secretsmanager_secrets = Resources.*[
	Type == "AWS::SecretsManager::Secret"
]

rule secretsmanager_cross_region_replication when %secretsmanager_secrets !empty {
	%secretsmanager_secrets {
		Properties {
			ReplicaRegions exists <<Cross region replication is disabled.>>
		}
	}
}


Actions



Customize Template

* Required field