Skip to main content

ECS Instance Enabled Security Protection

ID: rule:aliyun:ecs-instance-enabled-security-protection
Severity: high

Description

Ensures that ECS instances have security enhancement strategy enabled.

Reason for Violation

Without security protection, the instance is more vulnerable to attacks and malware.

Recommendation

Enable security enhancement strategy for the ECS instance by setting SecurityEnhancementStrategy to 'Active'.

Resource Types

  • ALIYUN::ECS::Instance
  • ALIYUN::ECS::InstanceGroup