A Config rule that checks whether the compliance status of the Amazon EC2 Systems Manager patch compliance is COMPLIANT or NON_COMPLIANT after the patch installation on the instance. The rule is compliant if the field status is COMPLIANT.

 
Tags
Systems Manager
Items
1
Size
0.7 KB
AWSTemplateFormatVersion: '2010-09-09'
Resources:
  ConfigRule:
    Type: 'AWS::Config::ConfigRule'
    Properties:
      ConfigRuleName: ec2-managedinstance-patch-compliance-status-check
      Description: >-
        A Config rule that checks whether the compliance status of the Amazon
        EC2 Systems Manager patch compliance is COMPLIANT or NON_COMPLIANT after
        the patch installation on the instance. The rule is compliant if the
        field status is COMPLIANT.
      InputParameters: {}
      Scope:
        ComplianceResourceTypes:
          - 'AWS::SSM::PatchCompliance'
      Source:
        Owner: AWS
        SourceIdentifier: EC2_MANAGEDINSTANCE_PATCH_COMPLIANCE_STATUS_CHECK
Parameters: {}
Metadata: {}
Conditions: {}

Customize Cf Template

Rule Parameters

No rule paramters
 
* Required field