Help Center/ Config/ User Guide/ Resource Compliance/ Built-In Policies/ MapReduce Service/ KMS Encryption Is Enabled for MRS Clusters
Updated on 2025-08-25 GMT+08:00

KMS Encryption Is Enabled for MRS Clusters

Rule Details

Table 1 Rule details

Parameter

Description

Rule Name

mrs-cluster-encrypt-enable

Identifier

KMS Encryption Is Enabled for MRS Clusters

Description

If KMS encryption is not enabled for an MRS cluster, this cluster is non-compliant.

Tag

mrs

Trigger Type

Configuration change

Filter Type

mrs.mrs

Rule Parameters

None

Application Scenarios

To improve data security, you are advised to enable data disk encryption. Data on disks will be stored in ciphertext to reduce the risk of data leakage.

Solution

Enable data disk encryption when you buy a custom MRS cluster.

Rule Logic

  • If data disk encryption is disabled for an MRS cluster, this cluster is non-compliant.
  • If data disk encryption is enabled for an MRS cluster, this cluster is compliant.