A company security policy requires that incoming SSH traffic be limited to a defined set of addresses. The company uses an AWS Config rule to determine whether security groups permit unrestricted incoming SSH traffic.
A CloudOps engineer identifies a noncompliant resource and manually corrects the security group. The CloudOps engineer wants to automate remediation for other noncompliant resources.
What is the MOST operationally efficient solution that fulfills these requirements?
Community Discussion
No comments yet. Be the first to start the discussion!
Community Discussion