elbv2-acm-certificate-required - AWS Config

elbv2-acm-certificate-required

Checks if Application Load Balancers and Network Load Balancers have listeners that are configured to use certificates from AWS Certificate Manager (ACM). This rule is NON_COMPLIANT if at least 1 load balancer has at least 1 listener that is configured without a certificate from ACM or is configured with a certificate different from an ACM certificate.

Identifier: ELBV2_ACM_CERTIFICATE_REQUIRED

Resource Types: AWS::ElasticLoadBalancingV2::LoadBalancer

Trigger type: Periodic

AWS Region: All supported AWS regions except Asia Pacific (Jakarta), Middle East (UAE), Asia Pacific (Hyderabad), Asia Pacific (Osaka), Asia Pacific (Melbourne), AWS GovCloud (US-East), AWS GovCloud (US-West), Israel (Tel Aviv), Canada West (Calgary), Europe (Spain), Europe (Zurich) Region

Parameters:

AcmCertificatesAllowed (Optional)
Type: CSV

Comma-separated list of certificate Amazon Resource Names (ARNs).

AWS CloudFormation template

To create AWS Config managed rules with AWS CloudFormation templates, see Creating AWS Config Managed Rules With AWS CloudFormation Templates.