Which solution will meet these requirements?

1 Comment

  1. Frank
    Author

    In my opinion, the answer is:
    Enable AWS Config across the organization. Create a conformance pack that uses the approved-amis-by-id AWS Config managed rule with the list of approved AMIs. Deploy the conformance pack across the organization. Configure the rule to run the AWS-StopEC2lnstance AWS Systems Manager Automation runbook for the noncompliant EC2 instances.

Leave a Reply to Frank Cancel reply

Your email address will not be published. Required fields are marked *

1 + fourteen =