Updated on 2025-01-20 GMT+08:00

Conformance Package for ECS

The following table lists the rules and solutions included in this conformance package template.

Table 1 Conformance package description

Rule

Cloud Service

Description

ecs-instance-key-pair-login

ecs

If key pair authentication is not required for ECS logging, this ECS is noncompliant.

ecs-instance-no-public-ip

ecs

If an ECS has an EIP attached, this ECS is noncompliant.

ecs-multiple-public-ip-check

ecs

If an ECS has multiple EIPs attached, this ECS is noncompliant.

stopped-ecs-date-diff

ecs

If an ECS has been stopped for longer than the time allowed, and no operations have been performed on it, this ECS is noncompliant.

volumes-encrypted-check

ecs, evs

If a mounted EVS disk is not encrypted, this disk is noncompliant.

ecs-attached-hss-agents-check

ecs

If an ECS does not have an HSS agent installed or the protection mode enabled, this ECS is noncompliant.

ecs-instance-agency-attach-iam-agency

ecs

If an ECS does not have any IAM agencies attached, this ECS is noncompliant.

ecs-last-backup-created

cbr, ecs

If an ECS does not have a backup created within the specified period, this ECS is noncompliant.