sagemaker-notebook-instance-inside-vpc
Checks if an Amazon SageMaker notebook instance is launched within a VPC or within a list of approved subnets. The rule is NON_COMPLIANT if a notebook instance is not launched within a VPC or if its subnet ID is not included in the parameter list.
Identifier: SAGEMAKER_NOTEBOOK_INSTANCE_INSIDE_VPC
Resource Types: AWS::SageMaker::NotebookInstance
Trigger type: Configuration changes
Amazon Web Services Region: All supported Amazon regions except US ISO West (Northern California), US ISO East, Middle East (UAE), Asia Pacific (Hyderabad), Asia Pacific (Malaysia), US ISOB East (Ohio), Asia Pacific (Melbourne), Amazon GovCloud (US-East), Amazon GovCloud (US-West), Israel (Tel Aviv), Canada West (Calgary), Europe (Spain), Europe (Zurich) Region
Parameters:
- SubnetIds (Optional)
- Type: CSV
-
Comma-separated list of subnet IDs that notebook instances can be launched in.
Amazon CloudFormation template
To create Amazon Config managed rules with Amazon CloudFormation templates, see Creating Amazon Config Managed Rules With Amazon CloudFormation Templates.