Getting Started with AWS Config

Getting Started with AWS Config
Getting Started with AWS Config

CLOUD LABS



Getting Started with AWS Config

In this Cloud Lab, we'll learn to use AWS Config to monitor your AWS resources and enforce compliance on noncompliant resources.

9 Tasks

beginner

1hr 30m

Certificate of Completion

Desktop OnlyDevice is not compatible.
No Setup Required
Amazon Web Services

Learning Objectives

A solid understanding of AWS Config
The ability to monitor resource configurations using AWS Config
Hands-on experience with remediation actions to enforce compliance

Technologies
Systems Manager
EC2 logoEC2
Config
Skills Covered
Using AWS Cloud Services
Cloud Lab Overview

AWS Config is an AWS management service that allows configurations of AWS resources to be monitored. It enforces compliance on AWS resources and their relationships in a specific region. It keeps track of the specified resources and marks a resource as noncompliant if it does not follow the specified rules.

In this Cloud Lab, you’ll learn how to use AWS Config to enforce compliance on EC2 instances and EC2 security groups. You’ll start by creating an IAM role that will allow AWS Config to perform all the required functions. Next, you’ll set up AWS Config to monitor EC2 instances and EC2 security groups in the us-east-1 region. Then, you’ll add the rules that you want to enforce on the specified resources. After setting up the AWS Config, you’ll create noncompliant resources and check how AWS Config responds. You’ll then add remediation actions that will be used to enforce compliance on these resources.

After finishing this Cloud Lab, you’ll be well-equipped to use AWS Config to monitor AWS resources. You’ll also be able to enforce compliance on the noncompliant resources, making sure that no AWS resource violates your organization’s policies.

The following is a high-level architecture diagram of the infrastructure you’ll set up in this Cloud Lab:

Architecture diagram
Architecture diagram
Cloud Lab Tasks
1.Introduction
Getting Started
2.Provision the Required Infrastructure
Create an IAM Role
Start the Configuration Recorder
Add AWS Config Rules
Provision EC2 Resources
3.Check and Remediate the Noncompliant Resource
Check the Resources’ Compliance
Add and Use a Remediation Action
4.Conclusion
Clean Up
Wrap Up
Labs Rules Apply
Stay within resource usage requirements.
Do not engage in cryptocurrency mining.
Do not engage in or encourage activity that is illegal.

Before you start...

Try these optional labs before starting this lab.

Relevant Course

Use the following content to review prerequisites or explore specific concepts in detail.

Hear what others have to say
Join 1.4 million developers working at companies like