logo

Database

Aws Backup Retention Period

Description

Detects AWS ElastiCache replication groups with insufficient backup retention periods. ElastiCache clusters with snapshot retention periods under 7 days may not maintain adequate backup history for disaster recovery, potentially risking data loss in recovery scenarios.

Weakness:

101 - Lack of protection against deletion

Category: Functionality Abuse

Detection Strategy

    Scans all ElastiCache replication groups in the specified AWS region

    Reports a vulnerability when a replication group's SnapshotRetentionLimit is less than 7 days

    Checks the backup retention configuration of each replication group to ensure sufficient backup history is maintained

Severity v4.0

1.8

Low

Method ID

CSPM-ATAEH

Technique

CSPM

Target

AWS

Technology

ELASTICACHE

CWE ID(s)

CWE-732