aws / aws/aws-parallelcluster

Medium Security Finding for Slurm Accounting database

Open
#6,651 4 comments 0 reactions 0 assignees View on GitHub
Backlog enhancement Feature Request
Dominant language
Python
Stars
888
Forks
314
Avg merge
1d 10h
Merged PRs (30d)
43

Description

Hello,

I'm getting a security finding for the Aurora RDS MySQL accounting database. It seem that we are expected to an IAM Authentication instead of a password authentication, even with a rotating secret. Based on a cursory look at the documentation it seems that the normal setup for the configuration file needs to have a password type of connection.

Is there a work around for this of some sort? Maybe using an external accounting RDS could help with this?

The security control is as follows.

https://docs.aws.amazon.com/securityhub/latest/userguide/rds-controls.html#rds-12

Contributor guide

Open the contributing guide

Research direction

Review the AWS Security Hub RDS-12 control and the ParallelCluster documentation for Slurm accounting database configuration. Determine whether IAM authentication is supported for the Aurora RDS MySQL accounting database or whether an external accounting RDS is a viable workaround; document the supported resolution and its configuration requirements.

Written by the indexing model from the issue text.

Assessment

Tech stack
aws, mysql, python
Domain
authentication, cloud, databases, security
Issue type
Feature
Difficulty
4/5
Estimated time
3-5 days
Activity status
Stale
Clarity
Needs clarification
Newbie friendliness
20/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.