Determine if your Amazon EC2 instances have the desired instance type(s) established by your organization based on the workload deployed. The desired instance type(s) must be defined in the conformity rule settings, on the Trend Micro Cloud One™ – Conformity account console.
This rule can help you with the following compliance standards:
- APRA
- MAS
For further details on compliance standards supported by Conformity, see here.
This rule can help you work with the AWS Well-Architected Framework.
This rule resolution is part of the Conformity Security & Compliance tool for AWS.
Setting limits for the instance type(s) of the Amazon EC2 instances provisioned in your AWS cloud account can help you to manage better your compute power, address internal compliance requirements, and prevent unexpected charges on your AWS bill.
Audit
To determine if all your Amazon EC2 instances have the desired type(s), perform the following operations:
Remediation / Resolution
To ensure that the creation of your Amazon EC2 instances is limited to the desired instance type(s) only, perform the following operations:
Note: Creating a support case to request instance type limitations using the AWS Command Line Interface (AWS CLI) is not currently supported.References
- AWS Documentation
- Amazon EC2 FAQs
- Amazon EC2 Instance Types
- Amazon EC2 instances
- Instance types
- AWS Command Line Interface (CLI) Documentation
- ec2
- describe-instances
Unlock the Remediation Steps
Free 30-day Trial
Automatically audit your configurations with Conformity
and gain access to our cloud security platform.
You are auditing:
EC2 Desired Instance Type
Risk Level: Medium