EC2 instances managed by SSM should have a compliant patch status

이 페이지는 아직 한국어로 제공되지 않으며 번역 작업 중입니다. 번역에 관한 질문이나 의견이 있으시면 언제든지 저희에게 연락해 주십시오.

Description

This control verifies the status of Systems Manager patch compliance, ensuring that patch installations on EC2 instances are successful. If there are any patch compliance events with a status of NON_COMPLIANT, the control will fail. This check applies only to EC2 instances managed by Systems Manager Patch Manager.

Keeping your EC2 instances patched according to organizational requirements helps to minimize the attack surface within your AWS accounts.

Remediation

For guidance on configuring and troubleshooting Patch Manager, refer to the AWS Systems Manager Patch Manager section of the AWS Systems Manager User Guide.