Skip to content

AWS Technologies Blog

Menu
  • Home
  • KB
  • Services
  • Resources
  • Posts
  • Find
    • Categories
    • Tags
  • About
Menu

RDS Security

Posted on January 27, 2025January 27, 2025 by wpadmin

Encryption at rest can be enabled – includes DB storage, backups, read replicas and snapshots.

You can only enable encryption for an instance during creation time, it cannot be changed.

Transparent Data Encryption (TDE) can be used for Oracle and SQL Server.

AWS KMS is used to manage encryption keys.

Read replicas from a encrypted database in the same region use the same keys as the primary, but if it’s in a different region it used a different key.

You cannot restore an unencrypted backup to an encrypted DB instance.

  • Product List
  • Documentation

billing ciem containers cost cspm ebs ec2 ecs edge eks elb event Firewall fsx hybrid iam lambda NACL outpostd policies pop princing rds route53 s3 security serverless services SG siem storage vpc

  • Amazon FSx
  • aws
  • aws notes
  • billing
  • cloud
  • compute
  • containers
  • core
  • databases
  • development
  • ebs
  • ec2
  • ecs
  • edge
  • efs
  • eks
  • hybrid
  • iam
  • lambda
  • network
  • outposts
  • pricing
  • rds
  • route53
  • s3
  • security
  • serverless
  • services
  • storage
  • support
  • vpc
©2025 AWS Technologies Blog | Built using WordPress and Responsive Blogily theme by Superb