官术网_书友最值得收藏!

  • Mastering AWS Security
  • Albert Anthony
  • 196字
  • 2021-07-02 15:44:08

AWS Config security checks

AWS Config is a continuous monitoring and assessment service that records changes in the configuration of your AWS resources. You can view the current and past configurations of a resource and use this information to troubleshoot outages, conduct security attack analysis, and much more. You can view the configuration at time and use that information to reconfigure your resources and bring them into a steady state during an outage situation.

Using Config Rules, you can run continuous assessment checks on your resources to verify that they comply with your own security policies, industry best practices, and compliance regimes such as PCI/HIPAA. For example, AWS Config provides managed Config rules to ensure that encryption is turned on for all EBS volumes in your account. You can also write a custom Config rule to essentially codify your own corporate security policies. AWS Config send you alerts in real time when a resource is wrongly configured, or when a resource violates a particular security policy.

The following figure depicts various rule sets in AWS Config; these could be custom rules or rules provided out of the box by AWS:

Figure 11 - AWS Config Rules
主站蜘蛛池模板: 葫芦岛市| 教育| 雅江县| 玉溪市| 三门峡市| 临清市| 甘孜县| 宁陵县| 深圳市| 尤溪县| 鄂托克前旗| 汪清县| 睢宁县| 长海县| 黔东| 页游| 滦南县| 甘肃省| 凤庆县| 广安市| 济源市| 时尚| 延川县| 南乐县| 大港区| 浏阳市| 长白| 成武县| 剑川县| 西丰县| 江孜县| 孙吴县| 渝中区| 精河县| 兴和县| 诸城市| 莆田市| 蒲江县| 望都县| 肇庆市| 井研县|