💼 [EC2.10] Amazon EC2 should be configured to use VPC endpoints that are created for the Amazon EC2 service
- ID:
/frameworks/aws-fsbp-v1.0.0/ec2/10
Description
To improve the security posture of your VPC, you can configure Amazon EC2 to use
an interface VPC endpoint. Interface endpoints are powered by AWS PrivateLink,
a technology that enables you to access Amazon EC2 API operations privately.
It restricts all network traffic between your VPC and Amazon EC2 to the Amazon
network. Because endpoints are supported within the same Region only, you cannot
create an endpoint between a VPC and a service in a different Region. This prevents
unintended Amazon EC2 API calls to other Regions.
Similar
- AWS Security Hub
- Internal
Similar Sections (Give Policies To)
Sub Sections
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|
Policies (1)