Amazon EC2 instances should be managed by AWS Systems Manager
Severity: Medium
Resource Types: AWS::EC2::Instance
Description
This control checks whether the EC2 instances in your account are managed by AWS Systems Manager. Systems Manager is an AWS service that you can use to view and control your AWS infrastructure.
To help you to maintain security and compliance, Systems Manager scans your managed instances. A managed instance is a machine that is configured for use with Systems Manager. Systems Manager then reports or takes corrective action on any policy violations that it detects. Systems Manager also helps you to configure and maintain your managed instances.
Remediation
To ensure that EC2 instances are managed by Systems Manager
- Open the AWS Systems Manager console.
- Choose
Quick setup
. - On the configuration screen, keep the default options.
- Choose
Enable
.