AWS Compute Services Benchmark v1.1.0

Ensure EC2 Auto Scaling Groups Propagate Tags to EC2 Instances That It Launches
Profile Applicability: Level 1 Description:  This rule ensures that tags are automatically propagated from EC2 Auto Scaling groups to the EC2 instances...
Thu, 10 Apr, 2025 at 4:40 AM
Ensure Amazon ECS Task Definitions Using 'Host' Network Mode Do Not Allow Privileged or Root User Access to the Host
Profile Applicability: Level 1 Description:  This rule ensures that Amazon Elastic Container Service (Amazon ECS) task definitions using host network m...
Thu, 10 Apr, 2025 at 4:46 AM
Ensure 'assignPublicIp' is Set to 'DISABLED' for Amazon ECS Services
Profile Applicability: Level 1 Description:  This rule ensures that assignPublicIp is set to DISABLED for Amazon ECS services. Disabling the automatic ...
Thu, 10 Apr, 2025 at 4:50 AM
Ensure Amazon ECS Task Definitions Do Not Have 'pidMode' Set to 'host'
Profile Applicability: Level 1 Description:  This rule ensures that Amazon ECS task definitions are configured in such a way that they do not share the...
Thu, 10 Apr, 2025 at 4:58 AM
Ensure Amazon ECS Task Definitions Do Not Have 'privileged' Set to 'true'
Profile Applicability: Level 1 Description: This rule ensures that Amazon ECS task definitions do not grant privileged access to the host container ins...
Thu, 10 Apr, 2025 at 5:04 AM
Ensure 'readonlyRootFilesystem' is Set to 'True' for Amazon ECS Task Definitions
Profile Applicability: Level 1 Description:  This rule ensures that the readonlyRootFilesystem parameter is enabled in Amazon ECS task definitions to re...
Thu, 10 Apr, 2025 at 5:49 AM
Ensure Secrets Are Not Passed as Container Environment Variables in Amazon ECS Task Definitions
Profile Applicability: Level 1 Description: Ensure that sensitive secrets, such as AWS_ACCESS_KEY_ID, AWS_SECRET_ACCESS_KEY, and ECS_ENGINE_AUTH_DATA, ...
Thu, 10 Apr, 2025 at 5:56 AM
Ensure Logging is Configured for Amazon ECS Task Definitions
Profile Applicability: Level 1 Description: Configure logging for Amazon ECS task definitions to capture detailed application and container activity. T...
Thu, 10 Apr, 2025 at 6:02 AM
Ensure Amazon ECS Fargate Services Are Using the Latest Fargate Platform Version
Profile Applicability: Level 1 Description: Ensure that Amazon ECS Fargate services use the latest Fargate platform version to benefit from the latest ...
Thu, 10 Apr, 2025 at 6:09 AM
Ensure Monitoring is Enabled for Amazon ECS Clusters
Profile Applicability: Level 2 Description: Enable AWS CloudWatch Container Insights for Amazon ECS clusters to monitor resource usage, performance, an...
Thu, 10 Apr, 2025 at 6:16 AM