Ecosyste.ms: Awesome

An open API service indexing awesome lists of open source software.

Awesome Lists | Featured Topics | Projects

https://github.com/epomatti/aws-inspector

Amazon Inspector vulnerability management
https://github.com/epomatti/aws-inspector

aws aws-inspector aws-security ec2 ecr lambda ssm systems-manager terraform

Last synced: about 2 months ago
JSON representation

Amazon Inspector vulnerability management

Awesome Lists containing this project

README

        

# AWS Inspector

Amazon Inspector vulnerability scan.

👉 Before you start, set up these services manually:
- Use the Console to enable **Inspector**.
- **Fleet Manager** to managed EC2 instances, `Default Host Management` is enough for testing.

Create the test resources:

```sh
terraform init
terraform apply -auto-approve
```

The configuration will create the following resources:

- **Lambda**
- **ECR**
- **EC2**

To scan an ECR image, upload one if none is available:

```sh
bash ecrBuildPush.bash
```

If all goes well, coverage should be 100% for all environments created by this config:

The EC2 instance should be found by the Fleet Manager:

For ECR, vulnerabilities should be shown on Inspector as well: