api-gw-ssl-enabled - AWS Config

api-gw-ssl-enabled

Checks if a REST API stage uses an SSL certificate. The rule is NON_COMPLIANT if the REST API stage does not have an associated SSL certificate.

Note

This rule returns NOT_APPLICABLE if the GetIntegration API returns AWS as type.

Identifier: API_GW_SSL_ENABLED

Resource Types: AWS::ApiGateway::Stage

Trigger type: Configuration changes

AWS Region: All supported AWS regions except US ISO West (Northern California), Asia Pacific (Jakarta), US ISO East, Asia Pacific (Osaka), Asia Pacific (Malaysia), US ISOB East (Ohio), Canada West (Calgary) Region

Parameters:

CertificateIDs (Optional)
Type: CSV

Comma-separated list of client certificate IDs configured on a REST API stage.

AWS CloudFormation template

To create AWS Config managed rules with AWS CloudFormation templates, see Creating AWS Config Managed Rules With AWS CloudFormation Templates.