Ensure AWS AMI launch permissions are limited
Error: AWS AMI launch permissions are not limited
Bridgecrew Policy ID: BC_AWS_GENERAL_165
Checkov Check ID: CKV_AWS_205
Severity: LOW
AWS AMI launch permissions are not limited
Description
It is recommended not to give the ability to launch AMIs across multiple accounts, and if it is implemented, make sure it is properly used.
Fix - Runtime
TBA
Fix - Buildtime
Terraform
- resource "aws_ami_launch_permission" "remove_equivalent_block" {
- image_id = "ami-2345678"
- account_id = "987654321"
- }
Updated 3 months ago