RDS automatic minor version upgrades should be enabled
Identifier
rds-enable-auto-minor-version-upgrade
Category
Identify > Vulnerability, patch, and version management
Description
This control checks whether Amazon Relational Database Service (RDS) instances have automatic minor version upgrades enabled. Enabling this setting ensures that your RDS instances automatically receive minor engine version updates, which include critical security patches, bug fixes, and performance improvements.
This feature is especially important for reducing manual maintenance overhead and minimizing the risk of running outdated or vulnerable database software.
Non Compliant Example
| Terraform | |
|---|---|
Remediation
To fix this violation, enable automatic minor version upgrades by setting auto_minor_version_upgrade = true:
| Terraform | |
|---|---|