- 최신
- 최다 투표
- 가장 많은 댓글
You cannot access the host in Fargate and run docker exec
from there.
However, you can enable ECS Command Execution in your task/service definition and then use the command aws ecs execute command
which is going to have the same effect.
I can't recommend more to configure your cluster logging settings to log these exec commands so that you can audit when your users ran commands and see what these are (and their outputs).
Activating it is rather simple, but if you want something that will take care of creating the task definitions and possibly the cluster for you, look at x-cluster and x-ecs.EnableExecuteCommand which will create the CFN templates for you.
If you are using an existing cluster and these settings are set for command logging, compose-x will automatically detect that and configure IAM permissions accordingly.
Hope this helps,
관련 콘텐츠
- AWS 공식업데이트됨 2년 전