官术网_书友最值得收藏!

AWS Config security checks

AWS Config is a continuous monitoring and assessment service that records changes in the configuration of your AWS resources. You can view the current and past configurations of a resource and use this information to troubleshoot outages, conduct security attack analysis, and much more. You can view the configuration at time and use that information to reconfigure your resources and bring them into a steady state during an outage situation.

Using Config Rules, you can run continuous assessment checks on your resources to verify that they comply with your own security policies, industry best practices, and compliance regimes such as PCI/HIPAA. For example, AWS Config provides managed Config rules to ensure that encryption is turned on for all EBS volumes in your account. You can also write a custom Config rule to essentially codify your own corporate security policies. AWS Config send you alerts in real time when a resource is wrongly configured, or when a resource violates a particular security policy.

The following figure depicts various rule sets in AWS Config; these could be custom rules or rules provided out of the box by AWS:

Figure 11 - AWS Config Rules
主站蜘蛛池模板: 保定市| 阳朔县| 大竹县| 桃江县| 梅州市| 镇雄县| 射洪县| 南汇区| 竹北市| 区。| 略阳县| 堆龙德庆县| 甘肃省| 东源县| 浦城县| 赞皇县| 西和县| 唐河县| 轮台县| 汪清县| 巫山县| 淮北市| 甘肃省| 恭城| 梨树县| 弥勒县| 清河县| 佛山市| 乌鲁木齐市| 望都县| 綦江县| 平乡县| 隆尧县| 乌兰察布市| 洱源县| 山丹县| 沧源| 襄汾县| 石台县| 河曲县| 乐亭县|