aws-samples / aws-secure-environment-accelerator

The AWS Secure Environment Accelerator is a tool designed to help deploy and operate secure multi-account, multi-region AWS environments on an ongoing basis. The power of the solution is the configuration file which enables the completely automated deployment of customizable architectures within AWS without changing a single line of code.
Apache License 2.0
725 stars 233 forks source link

feature: Configuration and docs to enable SSM Quick Setup patch policies (centralized patching) #1157

Closed rjjaegeraws closed 1 year ago

rjjaegeraws commented 1 year ago

By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the terms of your choice.

This PR introduces documentation containing steps needed to deploy the SSM Quick Setup Patch Policy within the ASEA. This also includes the use of a new custom AWS Config rule, and SSM document (auto remediation) to properly tag EC2 roles required by the Quick Setup solution. A new sample configuration file demonstrates how these are configured.