EventBridge custom event buses should have a resource-based policy attached
このページは日本語には対応しておりません。随時翻訳に取り組んでいます。
翻訳に関してご質問やご意見ございましたら、
お気軽にご連絡ください。
Description
This control verifies whether a resource-based policy is attached to an Amazon EventBridge custom event bus. The control fails if the event bus lacks a resource-based policy.
Without a resource-based policy by default, an EventBridge custom event bus permits access by principals within the account. By adding a resource-based policy, you can restrict access to the event bus to specific accounts and intentionally grant access to external entities as needed.
For steps to attach a resource-based policy to an EventBridge custom event bus, refer to Using Resource-Based Policies for Amazon EventBridge in the Amazon EventBridge User Guide.