api-gw-ssl-enabled
Checks if a REST API stage uses an SSL certificate. The rule is NON_COMPLIANT if the REST API stage does not have an associated SSL certificate.
Note
This rule returns NOT_APPLICABLE
if the GetIntegration API returns AWS
as type.
Identifier: API_GW_SSL_ENABLED
Resource Types: AWS::ApiGateway::Stage
Trigger type: Configuration changes
AWS Region: All supported AWS regions except US ISO West, Asia Pacific (Jakarta), US ISO East, Asia Pacific (Osaka), Asia Pacific (Malaysia), US ISOB East, Canada West (Calgary) Region
Parameters:
- CertificateIDs (Optional)
- Type: CSV
-
Comma-separated list of client certificate IDs configured on a REST API stage.
AWS CloudFormation template
To create AWS Config managed rules with AWS CloudFormation templates, see Creating AWS Config Managed Rules With AWS CloudFormation Templates.