AWS Misconfigurations
CloudFront Audit
Checks Performed
- CloudFront Web Distributions Should Automatically Compress Web Content
- Custom SSL Certificate Should Be Set For Amazon CloudFront Distributions
- HTTPS Should Be Enabled on CloudFront Distributions
- CloudFront Distributions Should Have Field-Level Encryption Enabled
- CloudFront Distributions Should Have Geo Restriction Enabled
- AWS Account Should Use CloudFront CDN Service
- CloudFront Distributions Should Not Use Insecure SSL Protocols
- CloudFront Should Be Integrated With AWS WAF
- Logging Should Be Enabled For CloudFront Distributions
- Origin Access Identity Should Be Enabled For CloudFront Distributions
- Origin Failover Should Be Enabled For CloudFront Distributions
- CloudFront Distributions Should Use Security Policies With Appropriate Version And Ciphers
- CloudFront Distributions Should Use HTTPS For Secure Delivery of Web Content
- Web Applications Should Use CDNs
- Communication With Viewers Should Be Encrypted Using HTTPS