AWS Config Rule: EBS Last Backup Recovery Point Created
EBS_LAST_BACKUP_RECOVERY_POINT_CREATED
Ryan Ware
Last Update a year ago
Description: Checks if a recovery point was created for Amazon Elastic Block Store (Amazon EBS). The rule is NON_COMPLIANT if the Amazon EBS volume does not have a corresponding recovery point created within the specified time period.
Trigger type: Periodic
AWS Region: All supported AWS regions except China (Beijing), Asia Pacific (Jakarta), Middle East (UAE), Asia Pacific (Hyderabad), Asia Pacific (Osaka), Asia Pacific (Melbourne), AWS GovCloud (US-East), AWS GovCloud (US-West), Europe (Spain), China (Ningxia), Europe (Zurich) Region
How to Resolve Manually
This AWS Config Rule will check each EBS Volume in your account, within each region too.
This AWS Config Rule takes two parameters when calculating wether or not you have a backup recovery point created within your time period, they are;
- recoveryPointAgeValue
- recoveryPointAgeUnit
By default, StackZone sets these to equate to one day - which means if you have a backup recovery point for your EBS volume which is within the last day - you will show as COMPLIANT for this particular AWS Config Rule. If a backup recovery point does not exist within that timeframe, it will show as NON_COMPLIANT
To get to this point, you will need to incorporate AWS Backup. This StackZone Config Rule Article will show you how to create a Backup Plan for EBS Volumes and this StackZone article shows how you can use the Backup feature offered by StackZone, which may help you get Backup Standards up to scratch.
Want to know more about StackZone and how to make your cloud management simple and secure?
Check our how it works section with easy to follow videos or just create your own StackZone Account here