AWSConfigRemediation-DeleteUnusedVPCNetworkACL
Description
 The AWSConfigRemediation-DeleteUnusedVPCNetworkACL runbook deletes a
                network access control list (ACL) that is not associated with a subnet. 
Document type
Automation
Owner
Amazon
Platforms
Linux, macOS, Windows
Parameters
- 
                    AutomationAssumeRole Type: String Description: (Required) The Amazon Resource Name (ARN) of the AWS Identity and Access Management (IAM) role that allows Systems Manager Automation to perform the actions on your behalf. 
- 
                    NetworkAclId Type: String Description: (Required) The ID of the network ACL that you want to delete. 
Required IAM permissions
The AutomationAssumeRole parameter requires the following actions to
                 use the runbook successfully.
- 
                    ssm:StartAutomationExecution
- 
                    ssm:GetAutomationExecution
- 
                    ec2:DeleteNetworkAcl
- 
                    ec2:DescribeNetworkAcls
Document Steps
- 
                    aws:executeAwsApi- Deletes the network ACL specified in theNetworkAclIdparameter.
- 
                    aws:executeScript- Confirms the network ACL specified in theNetworkAclIdparameter was deleted.