官术网_书友最值得收藏!

AWS Config security checks

AWS Config is a continuous monitoring and assessment service that records changes in the configuration of your AWS resources. You can view the current and past configurations of a resource and use this information to troubleshoot outages, conduct security attack analysis, and much more. You can view the configuration at time and use that information to reconfigure your resources and bring them into a steady state during an outage situation.

Using Config Rules, you can run continuous assessment checks on your resources to verify that they comply with your own security policies, industry best practices, and compliance regimes such as PCI/HIPAA. For example, AWS Config provides managed Config rules to ensure that encryption is turned on for all EBS volumes in your account. You can also write a custom Config rule to essentially codify your own corporate security policies. AWS Config send you alerts in real time when a resource is wrongly configured, or when a resource violates a particular security policy.

The following figure depicts various rule sets in AWS Config; these could be custom rules or rules provided out of the box by AWS:

Figure 11 - AWS Config Rules
主站蜘蛛池模板: 犍为县| 泰和县| 赤城县| 普兰县| 静海县| 临沭县| 荥经县| 叶城县| 南靖县| 济阳县| 秦皇岛市| 宣恩县| 雷波县| 怀集县| 华容县| 资阳市| 汕尾市| 资源县| 江安县| 衡阳市| 砀山县| 临湘市| 烟台市| 辽中县| 北票市| 河津市| 梨树县| 云浮市| 如东县| 遂昌县| 绥芬河市| 宜城市| 桐庐县| 无为县| 盱眙县| 沿河| 白银市| 临漳县| 洛扎县| 正安县| 沙河市|