EC2 instances managed by SSM should have a compliant patch status

이 페이지는 아직 영어로 제공되지 않습니다. 번역 작업 중입니다.
현재 번역 프로젝트에 대한 질문이나 피드백이 있으신 경우 언제든지 연락주시기 바랍니다.

Description

This control verifies the status of Systems Manager patch compliance, ensuring that patch installations on EC2 instances are successful. If there are any patch compliance events with a status of NON_COMPLIANT, the control will fail. This check applies only to EC2 instances managed by Systems Manager Patch Manager.

Keeping your EC2 instances patched according to organizational requirements helps to minimize the attack surface within your AWS accounts.

Remediation

For guidance on configuring and troubleshooting Patch Manager, refer to the AWS Systems Manager Patch Manager section of the AWS Systems Manager User Guide.

PREVIEWING: brett.blue/embedded-collector-release