emr-master-no-public-ip
Checks if Amazon EMR clusters' master nodes have public IPs. The rule is NON_COMPLIANT if the master node has a public IP.
Note
This rule checks clusters that are in RUNNING or WAITING state.
This rule requires you to enable recording for the AWS::EC2::Instance
resource type in order to have an accurate evaluation.
Identifier: EMR_MASTER_NO_PUBLIC_IP
Resource Types: AWS::EMR::Cluster, AWS::EC2::Instance
Trigger type: Periodic
AWS Region: All supported AWS regions except US ISO West (Northern California), Asia Pacific (Jakarta), Africa (Cape Town), US ISO East, Middle East (UAE), Asia Pacific (Hyderabad), Asia Pacific (Osaka), Asia Pacific (Malaysia), US ISOB East (Ohio), Asia Pacific (Melbourne), Europe (Milan), Israel (Tel Aviv), Canada West (Calgary), Europe (Spain), Europe (Zurich) Region
Parameters:
- None
AWS CloudFormation template
To create AWS Config managed rules with AWS CloudFormation templates, see Creating AWS Config Managed Rules With AWS CloudFormation Templates.