-
Improvement
-
Resolution: Unresolved
-
Minor
-
None
Cloud templates for the EC2 should include a field to enable disk encryption for EBS volumes. Currently, it seems to be unencrypted without any option to specify otherwise. For builds that include sensitive information, this is a must.
Per the documentation, "If you are creating a volume from a snapshot, you can't specify an encryption value. This is because only blank volumes can be encrypted on creation. "
That means the volume has been encrypted before creation for the root, for additional disk, different story