Ensure that your AWS Auto Scaling Groups (ASGs) launch configuration is referencing an active Amazon Machine Image (AMI) in order to maintain the auto-scaling process healthy
This rule can help you with the following compliance standards:
- APRA
- MAS
- NIST 800-53 (Rev. 4)
This rule resolution is part of the Cloud Conformity Security & Compliance tool for AWS
excellence
When your ASGs fail to launch new EC2 instances due to invalid (removed) AMIs, the scaling mechanism is unable to add compute resources to handle the load and this will cause a significant negative impact on your application performance.
Audit
To identify any unhealthy Auto Scaling Groups (i.e. ASGs that reference invalid AMIs), perform the following actions:
Remediation / Resolution
To fix any unhealthy AWS Auto Scaling Groups by replacing their invalid launch configuration with a valid one, perform the following:
References
- AWS Documentation
- Auto Scaling Groups
- Launch Configurations
- Troubleshooting Auto Scaling
- Troubleshooting Auto Scaling: AMI Issues
- Creating a Launch Configuration
- AWS Command Line Interface (CLI) Documentation
- autoscaling
- create-launch-configuration
- update-auto-scaling-group
- describe-launch-configurations
- ec2
- describe-images
Unlock the Remediation Steps
Gain free unlimited access
to our full Knowledge Base
Over 750 rules & best practices
for and
Get started for FREE
You are auditing:
Launch Configuration Referencing Missing AMI
Risk level: High