Bootstrapping

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

After the hardened AMI is instantiated, you can still amend and update security controls by using bootstrapping applications.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Common bootstrapping applications include Puppet, Chef, Capistrano, Cloud-Init and Cfn-Init. You can also run custom bootstrapping Bash or Microsoft Windows PowerShell scripts without using third-party tools.

See Also

https://d1.awsstatic.com/whitepapers/Security/AWS_Security_Best_Practices.pdf

Item Details

Category: SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|SC-7

Plugin: amazon_aws

Control ID: b266ec5bcb9ccadb5679d4ab8aadb9c14c37db4bc94e0a703d518b5a8bdf0c1a