ecs-containers-nonprivileged
Checks if the privileged parameter in the container definition of ECSTaskDefinitions is set to ‘true’. The rule is NON_COMPLIANT if the privileged parameter is ‘true’.
Note
This rule only evaluates the latest active revision of an Amazon ECS task definition.
Identifier: ECS_CONTAINERS_NONPRIVILEGED
Resource Types: AWS::ECS::TaskDefinition
Trigger type: Configuration changes
Amazon Web Services Region: All supported Amazon regions except US ISO West, US ISO East, Asia Pacific (Malaysia), US ISOB East, US West (Oregon), Canada West (Calgary) Region
Parameters:
- None
Amazon CloudFormation template
To create Amazon Config managed rules with Amazon CloudFormation templates, see Creating Amazon Config Managed Rules With Amazon CloudFormation Templates.