AWS Config

· 1 min read · AWS

AWS Config keeps an inventory and a history of the configuration of your AWS resources. Config rules evaluate them (for example "every EBS volume must be encrypted") and flag non-compliant resources, optionally with automatic remediation. Together with CloudTrail, which records who made a change, it answers what changed and whether it complied.

Charges are per configuration item recorded and per rule evaluation. With Terraform: aws_config_configuration_recorder, aws_config_delivery_channel and aws_config_config_rule. See security monitoring.

More tutorials that use Config

#AWS #Security