Ensure that your RDS Aurora clusters are using Multi-AZ deployment configurations for high availability and automatic failover support fully managed by AWS.
This rule can help you with the following compliance standards:
This rule resolution is part of the Cloud Conformity Security & Compliance tool for AWS
When Multi-AZ is enabled, AWS automatically provision and maintain a synchronous database standby replica on a dedicated hardware in a different datacenter (known as Availability Zone). AWS RDS will automatically switch from the primary cluster to the available standby replica in the event of a failure such as an Availability Zone outage, an internal hardware or network outage, a software failure or in case of planned interruptions such as software patching or changing the RDS cluster type.
Audit
To determine if your RDS clusters are using Multi-AZ configuration, perform the following:
Remediation / Resolution
To update your RDS clusters configuration and enable Multi-AZ deployment, perform the following:
References
- AWS Documentation
- Amazon RDS FAQs
- Amazon RDS Multi-AZ Deployments
- High Availability (Multi-AZ)
- Modifying a DB Cluster and Using the Apply Immediately Parameter
- AWS Command Line Interface (CLI) Documentation
- rds
- describe-db-clusters
- modify-db-cluster
- AWS Blog(s)
- Amazon RDS for SQL Server With Multi-AZ
Unlock the Remediation Steps
Gain free unlimited access
to our full Knowledge Base
Over 750 rules & best practices
for and
Get started for FREE
You are auditing:
RDS Multi-AZ
Risk level: Medium