AWS Config 推出 75 個新的受管規則
張貼日期:
2026年3月18日
AWS Config 宣佈推出額外 75 個受管 Config 規則,適用於安全性、耐久性和作業等各種使用案例。您現在可以直接從 AWS Config 搜尋、探索、啟用和管理這些額外規則,並治理 AWS 環境的更多使用案例。
此次發佈後,您現在可以在帳戶或整個組織中啟用這些控制項。例如,您可以在 AWS Amplify、Amazon SageMaker、Amazon Route 53 等服務中評估安全態勢。此外,您可以利用「一致性套件」來將這些新控制項分組,然後在所有帳戶或整個組織中部署,從而簡化您的多帳戶治理。
如需最近發佈之規則的完整清單,請瀏覽 AWS Config 開發人員指南。如需每個規則及其可用 AWS 區域的說明,請參閱我們的 Config 受管規則文件。若要開始使用 Config 規則,請參閱我們的文件。
推出的新規則:
- ACM_CERTIFICATE_TRANSPARENT_LOGGING_ENABLED
- AMPLIFY_APP_BUILD_SPEC_CONFIGURED
- AMPLIFY_APP_PLATFORM_CHECK
- AMPLIFY_BRANCH_AUTO_BUILD_ENABLED
- AMPLIFY_BRANCH_BUILD_SPEC_CONFIGURED
- AMPLIFY_BRANCH_FRAMEWORK_CONFIGURED
- AMPLIFY_BRANCH_PULL_REQUEST_PREVIEW_ENABLED
- APIGATEWAY_DOMAIN_NAME_TLS_CHECK
- APIGATEWAYV2_INTEGRATION_PRIVATE_HTTPS_ENABLED
- APPINTEGRATIONS_APPLICATION_APPROVED_ORIGINS_CHECK
- APPINTEGRATIONS_APPLICATION_TAGGED
- APPMESH_MESH_IP_PREF_CHECK
- APPMESH_VIRTUAL_GATEWAY_LISTENERS_HEALTH_CHECK_ENABLED
- APPMESH_VIRTUAL_NODE_LISTENERS_HEALTH_CHECK_ENABLED
- APPMESH_VIRTUAL_NODE_LISTENERS_OUTLIER_DETECT_ENABLED
- APPMESH_VIRTUAL_NODE_SERVICE_BACKENDS_TLS_ENFORCED
- CLOUDTRAIL_EVENT_DATA_STORE_MULTI_REGION
- CLOUDWATCH_ALARM_DESCRIPTION
- CODEARTIFACT_REPOSITORY_TAGGED
- CODEBUILD_PROJECT_TAGGED
- EC2_IPAMSCOPE_TAGGED
- EC2_LAUNCHTEMPLATE_EBS_ENCRYPTED
- ECS_SERVICE_PROPAGATE_TAGS_ENABLED
- ELBV2_TARGETGROUP_HEALTHCHECK_PROTOCOL_ENCRYPTED
- ELBV2_TARGETGROUP_PROTOCOL_ENCRYPTED
- EVENTSCHEMAS_DISCOVERER_TAGGED
- EVENTSCHEMAS_REGISTRY_TAGGED
- GROUNDSTATION_CONFIG_TAGGED
- GROUNDSTATION_DATAFLOWENDPOINTGROUP_TAGGED
- GROUNDSTATION_MISSIONPROFILE_TAGGED
- HEALTHLAKE_FHIRDATASTORE_TAGGED
- IAM_OIDC_PROVIDER_CLIENT_ID_LIST_CHECK
- IAM_POLICY_DESCRIPTION
- IMAGEBUILDER_DISTRIBUTIONCONFIGURATION_TAGGED
- IMAGEBUILDER_IMAGEPIPELINE_TAGGED
- IMAGEBUILDER_IMAGERECIPE_EBS_VOLUMES_ENCRYPTED
- IMAGEBUILDER_IMAGERECIPE_TAGGED
- IMAGEBUILDER_INFRASTRUCTURECONFIGURATION_TAGGED
- KINESISVIDEO_SIGNALINGCHANNEL_TAGGED
- KINESISVIDEO_STREAM_TAGGED
- LAMBDA_FUNCTION_APPLICATION_LOG_LEVEL_CHECK
- LAMBDA_FUNCTION_LOG_FORMAT_JSON
- LAMBDA_FUNCTION_SYSTEM_LOG_LEVEL_CHECK
- LIGHTSAIL_BUCKET_OBJECT_VERSIONING_ENABLED
- MEDIAPACKAGE_PACKAGINGCONFIGURATION_TAGGED
- MEDIATAILOR_PLAYBACKCONFIGURATION_TAGGED
- MEMORYDB_SUBNETGROUP_TAGGED
- NEPTUNE_CLUSTER_SNAPSHOT_IAM_DATABASE_AUTH_ENABLED
- OPENSEARCHSERVERLESS_COLLECTION_DESCRIPTION
- OPENSEARCHSERVERLESS_COLLECTION_STANDBYREPLICAS_ENABLED
- PANORAMA_PACKAGE_TAGGED
- RDS_CLUSTER_BACKUP_RETENTION_CHECK
- RDS_GLOBAL_CLUSTER_AURORA_MYSQL_SUPPORTED_VERSION
- RESILIENCEHUB_APP_TAGGED
- RESILIENCEHUB_RESILIENCYPOLICY_TAGGED
- ROUTE53_RECOVERY_CONTROL_CLUSTER_TAGGED
- ROUTE53_RECOVERY_READINESS_CELL_TAGGED
- ROUTE53_RECOVERY_READINESS_READINESS_CHECK_TAGGED
- ROUTE53_RECOVERY_READINESS_RECOVERY_GROUP_TAGGED
- ROUTE53_RECOVERY_READINESS_RESOURCE_SET_TAGGED
- ROUTE53_RESOLVER_RESOLVER_ENDPOINT_TAGGED
- S3_DIRECTORY_BUCKET_LIFECYCLE_POLICY_RULE_CHECK
- SAGEMAKER_DATA_QUALITY_JOB_ENCRYPT_IN_TRANSIT
- SAGEMAKER_DATA_QUALITY_JOB_ISOLATION
- SAGEMAKER_FEATUREGROUP_DESCRIPTION
- SAGEMAKER_INFERENCEEXPERIMENT_TAGGED
- SAGEMAKER_MODEL_BIAS_JOB_ENCRYPT_IN_TRANSIT
- SAGEMAKER_MODEL_BIAS_JOB_ISOLATION
- SAGEMAKER_MODEL_EXPLAINABILITY_JOB_ENCRYPT_IN_TRANSIT
- SAGEMAKER_MODEL_QUALITY_JOB_ENCRYPT_TRANSIT
- SAGEMAKER_MONITORING_SCHEDULE_ISOLATION
- SIGNER_SIGNINGPROFILE_TAGGED
- TRANSFER_CONNECTOR_AS2_ENCRYPTION_ALGORITHM_CHECK
- TRANSFER_CONNECTOR_AS2_MDN_SIGNING_ALGORITHM_CHECK
- TRANSFER_CONNECTOR_AS2_SIGNING_ALGORITHM_CHECK