ec2-launch-template-public-ip-disabled
Checks if Amazon EC2 Launch Templates are set to assign public IP addresses to Network Interfaces. The rule is NON_COMPLIANT if the default version of an EC2 Launch Template has at least 1 Network Interface with 'AssociatePublicIpAddress' set to 'true'.
Identifier: EC2_LAUNCH_TEMPLATE_PUBLIC_IP_DISABLED
Resource Types: AWS::EC2::LaunchTemplate
Trigger type: Configuration changes
Amazon Web Services Region: All supported Amazon regions except Middle East (UAE), Asia Pacific (Hyderabad), Asia Pacific (Melbourne), Amazon GovCloud (US-East), Amazon GovCloud (US-West), Israel (Tel Aviv), Europe (Spain), Europe (Zurich) Region
Parameters:
- exemptedLaunchTemplates (Optional)
- Type: CSV
-
Comma-separated list of exempted EC2 Launch Template IDs that are allowed to have Network Interfaces with the AssociatePublicIpAddress value set to 'true'.
Amazon CloudFormation template
To create Amazon Config managed rules with Amazon CloudFormation templates, see Creating Amazon Config Managed Rules With Amazon CloudFormation Templates.