github.com/khulnasoft-lab/defsec@v1.0.5-0.20230827010352-5e9f46893d95/avd_docs/aws/ecs/AVD-AWS-0035/Terraform.md (about)

     1  
     2  Enable in transit encryption when using efs
     3  
     4  ```hcl
     5   resource "aws_ecs_task_definition" "good_example" {
     6   	family                = "service"
     7   	container_definitions = file("task-definitions/service.json")
     8     
     9   	volume {
    10   	  name = "service-storage"
    11     
    12   	  efs_volume_configuration {
    13   		file_system_id          = aws_efs_file_system.fs.id
    14   		root_directory          = "/opt/data"
    15   		transit_encryption      = "ENABLED"
    16   		transit_encryption_port = 2999
    17   		authorization_config {
    18   		  access_point_id = aws_efs_access_point.test.id
    19   		  iam             = "ENABLED"
    20   		}
    21   	  }
    22   	}
    23     }
    24   
    25  ```
    26  
    27  #### Remediation Links
    28   - https://registry.terraform.io/providers/hashicorp/aws/latest/docs/resources/ecs_task_definition#transit_encryption
    29