Medium Security Finding for Slurm Accounting database
- Dominant language
- Python
- Stars
- 888
- Forks
- 314
- Avg merge
- 1d 10h
- Merged PRs (30d)
- 43
Description
Hello,
I'm getting a security finding for the Aurora RDS MySQL accounting database. It seem that we are expected to an IAM Authentication instead of a password authentication, even with a rotating secret. Based on a cursory look at the documentation it seems that the normal setup for the configuration file needs to have a password type of connection.
Is there a work around for this of some sort? Maybe using an external accounting RDS could help with this?
The security control is as follows.
https://docs.aws.amazon.com/securityhub/latest/userguide/rds-controls.html#rds-12
Contributor guide
Research direction
Review the AWS Security Hub RDS-12 control and the ParallelCluster documentation for Slurm accounting database configuration. Determine whether IAM authentication is supported for the Aurora RDS MySQL accounting database or whether an external accounting RDS is a viable workaround; document the supported resolution and its configuration requirements.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- aws, mysql, python
- Domain
- authentication, cloud, databases, security
- Issue type
- Feature
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 20/100