QuestionQ31

Deployment, Provisioning, and Automation

A CloudOps engineer is getting ready to deploy an application to Amazon EC2 instances in an Auto Scaling group. The application requires installation of dependencies. Application updates are released weekly.

The CloudOps engineer must implement a solution that incorporates the application updates regularly. The solution must also perform a vulnerability scan while the Amazon Machine Image (AMI) is being created.

What is the MOST operationally efficient solution that satisfies these requirements?

Explanation

EC2 Image Builder provides managed, repeatable AMI pipelines. A custom image recipe can install application software and dependencies, while a scheduled pipeline regularly builds updated AMIs. Image Builder also supports configuring vulnerability scans for image pipelines during image creation, so it meets the update and security requirements with less operational overhead than self-managed scripts or manually created images. Create an AMI image pipeline from the AWS CLI

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!