Microsoft Defender for Cloud
Cloud and workloads

Enable Defender for open-source relational databases on Amazon Web Services (AWS)

In brief

The page now more clearly explains that updating the AWS stack creates or updates the CloudFormation template with required permissions, and that Defender for Cloud configures auditing automatically. It also refines sensitive data discovery wording and the next-step navigation.

What Defender admins need to know

Administrators get clearer setup guidance; no new configuration or immediate action is specified.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

This article explains how to enable Defender for open-source relational databases on AWS so that you can start receiving alerts for suspicious activity.

When you enable this plan, Defender for Cloud also discovers sensitive data in your AWS account and enriches security insights with these findings. This capabilitySensitive data discovery is also included in Defender Cloud Security Posture Management (CSPM).

Learn more about this Microsoft Defender plan in Overview of Microsoft Defender for open-source relational databases.

Prerequisites

Before you enable Defender for open-source relational databases on AWS, make sure you meet the following requirements:

  1. In the deployment method section, select Download.

  2. Follow the instructions to update the stack in AWS. This processUpdating the AWS stack creates or updates the CloudFormation template with the required permissions.

  3. Select the checkbox to confirm that the CloudFormation template was updated in your AWS environment (stack).

Affected parameter and option group settings

When you enable Defender for open-source relational databases, Defender for Cloud automatically configures auditing parameters in your RDS instances to consume and analyze access patterns. You don't need to modify these settings manually. They'reThe auditing settings are listed here for reference.

Type Parameter Value

Next stepsteps

[!div class="nextstepaction"] Respond to Defender open-source database alerts