πΌ [EC2.4] Stopped EC2 instances should be removed after a specified time period
- Contextual name: πΌ [EC2.4] Stopped EC2 instances should be removed after a specified time period
- ID:
/frameworks/aws-fsbp-v1.0.0/ec2/04
- Located in: πΌ Elastic Compute Cloud (EC2)
Descriptionβ
When an EC2 instance has not run for a significant period of time, it creates
a security risk because the instance is not being actively maintained
(analyzed, patched, updated). If it is later launched, the lack of proper maintenance
could result in unexpected issues in your AWS environment. To safely maintain
an EC2 instance over time in an inactive state, start it periodically for maintenance
and then stop it after maintenance. Ideally, this should be an automated process.
Similarβ
- AWS Security Hub
- Internal
Similar Sections (Give Policies To)β
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|