Amzon Inspector Flashcards
AMazon Inspector
Amazon Inspector is an automated security assessment service that helps improve the security and compliance of applications deployed on AWS. Amazon Inspector automatically assesses applications for exposure, vulnerabilities, and deviations from best practices
Amazon inspector scope
- It scans instance and Containers for Vulnerabilities and deviations against best practices.
- Scans EC2 instances sown to instance OS level (if agent is installed).
- It also Scans containers on the instance.
Amazon Inspector Reachability Check
Aither using Inspector Agent or agentless, Amazon inspector Checks reachability end to end. EC2, ALB, DX, ELB, ENI, IGW, ACLS, RT’s, SG’s, Subnets, VPCs, VGWs & VPC Peering.
It checks network for
1. Recognized Port Listener
2. Recognized PortNOListener
3. No agent check
Amazon Inspector use case
Checks against CVE standards
Checks against CIS benchmarks
CHecks against Security Best practices