Question 487:
As an AWS specialist in a big organization, you are managing a large number of Linux-based EC2 instances in several AWS accounts. In order to follow the company security policies, you are looking for a method to automatically detect whether the instances are configured securely. The method should be able to check if root login over SSH and password authentication over SSH are disabled. Which of the following methods is the easiest one?
Answer options:
A.Create a Lambda function that loops through all Linux-based instances and checks the file /etc/ssh/sshd_config to see if SSH root login and password authentication over SSH are disabled. B.Create an Amazon Inspector assessment and include the “Security Best Practices-1.0 rule package” which can determine if root login over SSH and password authentication over SSH are disabled. C.Configure a rule in AWS Config to check if root login over SSH and password authentication over SSH are disabled in EC2 instances. Raise an SNS notification if the rule is not-compliant. D.Make sure that the Amazon Linux AMIs are used for EC2 instances. By default, root login over SSH and password authentication over SSH are disabled in Amazon issued AMIs.