1. 程式人生 > >Set Up Amazon Inspector

Set Up Amazon Inspector

Create an IAM role

  1. Select Create or choose role or choose Manage Inspector Service Role.
  2. Choose Allow to give Amazon Inspector read-only access to resources in your account.

Tag your Amazon EC2 instances

  1. Open the
    Amazon EC2 console
    , and choose Instances from the left navigation menu.
  2. Select the instances that you want Amazon Inspector to perform an assessment on, and choose the Tags view.
  3. Choose Add/Edit Tags, and enter a key, such as "examplekey," for the Key.
  4. Enter a Value
    , such as "examplevalue," and choose Save.

Install the Amazon Inspector agent

The instructions for installing the Amazon Inspector agent depend on the OS of the Amazon EC2 instance:

Define the assessment target

  1. After you've installed the Amazon Inspector agent, choose Next
    or choose Define an assessment target, or open the Amazon Inspector console, and from the left navigation menu choose Define an assessment target.
  2. Enter the name for your assessment target that you want to create, and choose the Key and Value pairs for the Amazon EC2 instances you want to include in the assessment, such as "examplekey" and "examplevalue." You can then choose Preview to view and verify the instances that are included.
  3. Choose Next.

Define the assessment template

  1. Enter a name for your assessment template.
  2. Select Common Vulnerabilities for the rule package.
  3. Select the Duration you want your assessment to run.
    Note: It's recommended that you choose a duration of one hour if you have more than one Rule Package or instance.
  4. Choose Next, and choose Create.
  5. Review the assessment template, and choose Create.

Run the assessment

  1. After completing the previous steps, open the Amazon Inspector console.
  2. Select the Assessment templates section to see available assessments.
  3. Choose the template you created, and choose Run to start the assessment immediately, or create an Assessment Event.
  4. After the assessment completes, from the left navigation menu choose Findings or Assessment runs.
    - Assessment runs include a list of all assessment runs, from which you can review information about that particular assessment, generate a report from that assessment, or navigate to the security Findings for specific assessments.
    - Findings include a list of all Findings for all assessment runs, which you can then filter.

Findings are identified security vulnerabilities or configuration exposures discovered during the Amazon Inspector assessment. To learn more about a Finding, choose the arrow next to the Finding to expand the detailed view. For help addressing these security issues, follow the instructions in the Recommendation section.

Assessment Reports include a summary of all the Amazon EC2 instances evaluated in the assessment and the Rules Packages used, a summary of the security Findings, details of each security Finding, and a list of the security rules passed during the assessment.

Note: Amazon Inspector assessment targets can only include Amazon EC2 instances that have a supported OS installed. See Amazon Inspector Supported Operating Systems and Regions for more information.

相關推薦

Set Up Amazon Inspector

Create an IAM role Select Create or choose role or choose Manage Inspector Service Role. Choos

Set Up a Spark SQL JDBC Connection on Amazon EMR

Amazon Web Services is Hiring. Amazon Web Services (AWS) is a dynamic, growing business unit within Amazon.com. We are currently hiring So

Set Up Scheduled EBS Volume Snapshots Using Amazon CloudWatch

Amazon Web Services is Hiring. Amazon Web Services (AWS) is a dynamic, growing business unit within Amazon.com. We are currently hiring So

Set up an Amazon EFS File Sync Between Two EFS File Systems

Amazon Web Services is Hiring. Amazon Web Services (AWS) is a dynamic, growing business unit within Amazon.com. We are currently hiring So

Set Up an Email Forwarding Rule in Amazon WorkMail

Amazon Web Services is Hiring. Amazon Web Services (AWS) is a dynamic, growing business unit within Amazon.com. We are currently hiring So

Git 出現Branch master set up to track remote branch master問題 與忽略文件上傳

span idea ron details -s 整合 解決 推送 指令 錯誤:在push 到遠程倉庫是一直提示下列錯誤,檢查了使用status檢查了也沒有發現錯誤,最後排查出來是當前分支為((no branch))即右上那個id (┬_┬)。。。。。 原因:

【Postgresql】set up

gad linu -1 min php linux. tor article gre https://www.howtoforge.com/tutorial/ubuntu-postgresql-installation/ https://linux.cn/article

GNS3 0.8.6計算idle pc值時出現Failed to find a working Idle PC value. Can't set up hypervisor on 127.0.0.1等問題

idle 計算 是否 image src bubuko 一個 work find 這學期在學計算機網絡,實驗課要用到gns30.8.6模擬。但是按照老師所給教程在設置idle pc時出現Failed to find a working Idle PC value. Can‘

[Fastai] How to set up fastai library on windows 10? Windows 10如何安裝fastai庫

According to Jeremy’s post: (assume you have gpu with cuda, conda and git installed) clone the git repo git clone https://github.com/

centos虛擬機器無法選擇無縫模式,在安裝增強功能時出現報錯This system is currently not set up to build kernel modules.

      在centos虛擬機器中,如果無法顯示無縫模式,介面看起來會非常奇怪。因此為了使用無縫模式,我們需要安裝centos的增強功能。 具體安裝步驟如下:     1.在cenos系統介面選擇【裝置】   &n

Set up k8s development env (by quqi99)

版權宣告:可以任意轉載,轉載時請務必以超連結形式標明文章原始出處和作者資訊及本版權宣告 (作者:張華 發表於:2018-07-10) Sign the CLA Sign via Hellosign - https://github.com/kubernetes/community

SpatialOS 在unity中的使用--Get started: 1 - Set up(3)

There are three parts to this step:(包含三個部分) Sign up for a SpatialOS account(註冊 SpatialOS賬號) Set up your machine(裝軟體) Clone the repos(克隆資料)

Git: set up global user name and email

Git: set up global user name and email [email protected] MINGW64 / $ git config --global user.name "dijk" [email protected] MINGW64

Set Up a Minimal Git Server

Github is well-known and we are enjoying it, but now I will set up a minimal Git server on Ubuntu according to Git on the Server for some reason you h

解決報錯:internal error: qemu unexpectedly closed the monitor: Cannot set up guest memory

kvm啟動虛擬機器報錯: 很明顯看報錯顯示記憶體不足,無法分配記憶體,檢視物理機記憶體使用正常,.xml修改虛機記憶體後啟動依然報錯 首先檢視本機的記憶體是否足夠分配,發現記憶體是充足的 再檢視vm記憶體分配策略 [[email protected] images]#

set up the price for incoming emails [beta] | Hacker News

ETHletter is a mail service - like Gmail, Yahoo mail or any other. But there's one big difference - during the email creation, you can set up the price for

Ethereum 69: how to set up a fully synced blockchain node in 10 mins

Wait for few hours until the blockchain is fully synced.The current block number as of 24th of September is: 3039786. On my AMD Ryzen 5 2600, 3.4Ghz, the s

Ask HN: I set up my own domain for my email and it's all going to SPAM

Have you implemented DKIM/SPF/DMARC? If you have not, that is a first step.Are you sending from a "consumer" network IP block (cable modem or DSL)? If so,

Ask HN: Best computer set up for quadriplegic?

Hi HN, long-time reader with a question that I feel would be done justice by this community. My Dad's computer is dying and he's a quadriplegic with limite

How can I set up PyCharm to launch from the Launcher?(ubuntu pycharm 無法 lock from launcher 問題解決)

PyCharm can create it's own launcher icon (but it's not created by default). All you have to do is: Start PyCharm. From the Tools menu, selec