Amazon CloudFront - Encryption at rest in Edge Locations

0

Does Amazon CloudFront do encryption at rest for its Edge Location nodes for the content it stores?

Scenario : CloudFront accessing its origins (S3, EC2, On-Prem, etc) and the contents is encrypted at REST at origin.

CloudFront Edge Location caches files being requested by the users and these files will stay there for hours, days (depending how it is set up) in the meantime what type of protection will CloudFront provide to these files that are available there at rest?

AWS
Jay R
asked 5 years ago645 views
1 Answer
0
Accepted Answer

CloudFront uses SSDs which are encrypted for edge location points of presence (POPs), and encrypted EBS volumes for Regional Edge Caches (RECs).

More information in our documentation: https://docs.aws.amazon.com/AmazonCloudFront/latest/DeveloperGuide/data-protection-summary.html#data-protection-summary-encryption-at-rest

Some additional material about Amazon CloudFront infrastructure security: https://www.youtube.com/watch?v=eorGJL-LkJc

profile pictureAWS
EXPERT
achraf
answered 5 years ago

You are not logged in. Log in to post an answer.

A good answer clearly answers the question and provides constructive feedback and encourages professional growth in the question asker.

Guidelines for Answering Questions