Amazon Inspector - Unmanaged EC2 instance

0

Hi, we are having issues with AWS Inspector because all new EC2 instances are shown as "Unmanaged EC2 instance" despite of having the SSM agent installed, having the right role with "AmazonSSMManagedInstanceCore" permissions attached, and being listed in the Managed Nodes within the SSM.

When we try to run the "AWSSupport-TroubleshootManagedInstance" automation, it gets stuck in step 4 "GetEC2InstanceProperties" in Pending state. Any idea about how to fix this? Thanks.

已提問 1 年前檢視次數 1770 次
2 個答案
0

Have you made sure the EC2 can reach to Systems Manager service on port 443 via IGW; NAT gateway or SSM VPC endpoint?? EC2 needs the Systems manager prerequisites as following (IAM role; OS supports; connectivity; etc.) https://docs.aws.amazon.com/systems-manager/latest/userguide/systems-manager-prereqs.html

AWS
Samuel
已回答 1 年前
0

If you have the agent installed and correct IAM role assigned, please create an endpoint to enable connectivity between ec2 and systems manager. https://docs.aws.amazon.com/systems-manager/latest/userguide/setup-create-vpc.html

AWS
Rishi
已回答 1 年前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南