lacework-global-383
Enable automatic minor version upgrades for Relational Database Service (RDS) instances (Automated)
Description
Enabling automatic minor version upgrades ensures that the Relational Database Management System (RDBMS) automatically installs the updates.
These upgrades might include security patches and bug fixes. Keeping up to date with patch installation is an important step in securing systems.
Remediation
From the AWS Console:
- Log in to the AWS Management Console.
- Click Services.
- Select Database > RDS.
- Click Databases.
- Select the applicable database.
- Click Modify.
- Under Maintenance, select the checkbox beside Enable auto minor version upgrade.
- Click Continue.
- Choose Apply immediately, and click Modify DB Instance.
From CLI:
aws rds modify-db-instance --db-instance-identifier <db_instance_id> --auto-minor-version-upgrade
References
https://docs.aws.amazon.com/securityhub/latest/userguide/rds-controls.html#rds-13
https://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/Overview.DBInstance.Modifying.html
https://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/USER_UpgradeDBInstance.Upgrading.html#USER_UpgradeDBInstance.Upgrading.AutoMinorVersionUpgrades