QuestionQ14

Security and Compliance

A DevOps engineer is deploying an AWS Service Catalog portfolio through AWS CodePipeline. The pipeline must create products and templates from a manifest file in JSON or YAML format, and it must apply security requirements to every AWS Service Catalog product managed by the pipeline.

Which solution satisfies these requirements automatically?

Explanation

An AWS Lambda invoke action in CodePipeline can execute custom automation that parses a JSON or YAML manifest, validates each product against security requirements, and uses AWS Service Catalog APIs to create or update products and their provisioning artifacts. CodeDeploy AppSpec files support application deployment lifecycle hooks, not Service Catalog portfolio management. The native Service Catalog deploy action is a CodePipeline action configured for a particular product and provisioning artifact, whereas the manifest-wide validation requirement needs custom logic.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!