Skip to main content

ECS Instance Image Type Check

ID: rule:aliyun:ecs-instance-image-type-check
Severity: medium

Description

Ensures ECS instances use images from authorized sources.

Reason for Violation

Using untrusted image sources can introduce security vulnerabilities or malware.

Recommendation

Specify an authorized ImageId for the ECS instance.

Resource Types

  • ALIYUN::ECS::Instance
  • ALIYUN::ECS::InstanceGroup