Amazon_ECS_8

Ensure there are no inline policies attached to the ECS service

Description

Ensure there are no inline policies attached to the service. Inline policies are policies that are embedded directly into a single user, group, or role. It is recommend to use managed policies instead of inline policies. Managed policies provide reusability, central change management, versioning and more capabilities.

Remediation

For Each ECS Service with inline policies perform the following steps:
1. In the IAM console, select Users from the navigation pane
2. Select Permissions
3. Remove any policies attached directly to the user (these are inline policies), and replace them with equivalent managed policies (in the Policies page) that are assigned to users, groups or roles.
For more information refer to: https://docs.aws.amazon.com/IAM/latest/UserGuide/access_policies_managed-vs-inline.html

Service

ECS

Severity

High

Compliance

Mapping

We are now live on AWS Marketplace.
The integrated view of your cloud infrastructure is now easier than ever!