Determine if the number of EC2-VPC Elastic IPs allocated per AWS region is close to the limit number established by AWS for cloud accounts that support Virtual Private Clouds (VPCs) and request limit increase in order to avoid reaching IP resource limitations during Amazon EC2 instance provisioning. Because the IPv4 public IP addresses are a scarce resource nowadays, all the AWS accounts are limited to 5 (five) Elastic IP addresses per region.
This rule can help you with the following compliance standards:
- APRA
- MAS
For further details on compliance standards supported by Conformity, see here.
This rule can help you work with the AWS Well-Architected Framework.
This rule resolution is part of the Conformity Security & Compliance tool for AWS.
efficiency
Monitoring your Elastic IP (EIP) limits will help you avoid public IP resources starvation in case you need to expand fast your Amazon EC2-VPC infrastructure.
Audit
When you create your cloud account, AWS sets automatically a fixed limit of 5 for the number of Elastic IPs available per region. To determine if your AWS account has reached the EIP limit, perform the following operations:
Remediation / Resolution
To request an increase for the Elastic IP (EIP) address limit, perform the following operations:
Note: Creating a support case to request a service limit increase using the AWS Command Line Interface (AWS CLI) is not currently supported.References
- AWS Documentation
- Elastic IP Addresses
- AWS Service Limits
- Amazon VPC Limits
- AWS Command Line Interface (CLI) Documentation
- ec2
- describe-account-attributes
- describe-addresses
Unlock the Remediation Steps
Free 30-day Trial
Automatically audit your configurations with Conformity
and gain access to our cloud security platform.
You are auditing:
EC2-VPC Elastic IP Address Limit
Risk Level: Medium