A company operates a data-ingestion application across multiple AWS accounts. The accounts belong to an organization in AWS Organizations. The company needs to monitor the application and centralize access to it. Currently, the application runs on Amazon EC2 instances in several Auto Scaling groups. The EC2 instances do not have internet access because the data is sensitive. Engineers have deployed the required VPC endpoints. The EC2 instances use a custom AMI built specifically for the application.
To maintain and troubleshoot the application, system administrators need to be able to log in to the EC2 instances. This access must be automated and centrally controlled. The company’s security team must be notified whenever the instances are accessed.
Which solution meets these requirements?
Community Discussion
No comments yet. Be the first to start the discussion!
Community Discussion