turbot/aws_compliance

Control: AWS ECS services should not have public IP addresses assigned to them automatically

Description

This control checks whether AWS ECS services are configured to automatically assign public IP addresses. This control fails if AssignPublicIP is enabled.

Usage

Run the control in your terminal:

powerpipe control run aws_compliance.control.ecs_service_not_publicly_accessible

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run aws_compliance.control.ecs_service_not_publicly_accessible --share

SQL

This control uses a named query:

ecs_service_not_publicly_accessible

Tags