Ensure that object storage bucket is not deleted after creation, and that the preventative measure cannot be unset.
Storage / Object / Controls / DEV
Prevent Bucket Deletion Through Irrevocable Bucket Retention Policy
CCC.ObjStor.CN03 · Data
Related Capabilities
| ID | Title | Description |
|---|---|---|
| CCC.Core.CP11 | Backup | The service can generate copies of its data or configurations in the form of automated backups, snapshot-based backups, or incremental backups. |
| CCC.Core.CP18 | Resource Versioning | The service automatically assigns versions to child resources which can be used to preserve, retrieve, and restore past iterations. |
Related Threats
| ID | Title | Description |
|---|---|---|
| CCC.Core.TH06 | Data is Lost or Corrupted | Services that rely on accurate data are susceptible to disruption in the event of data loss or corruption. Any actions that lead to the unintended deletion, alteration, or limited access to data can impact the availability of the service and the system it is part of. |
Assessment Requirements
| ID | Text | Applicability |
|---|---|---|
| CCC.ObjStor.CN03.AR01 | When an object storage bucket deletion is attempted, the bucket MUST be fully recoverable for a set time-frame after deletion is requested. | tlp-clear, tlp-green, tlp-amber, tlp-red |
| CCC.ObjStor.CN03.AR02 | When an attempt is made to modify the retention policy for an object storage bucket, the service MUST prevent the policy from being modified. | tlp-clear, tlp-green, tlp-amber, tlp-red |