Chapter 20: Enforcing Standards and Compliance with System Manger's Role and AWS Config
Systems Manager is a service comprising multiple individual capabilities grouped into five categories: Operations Management, Application Management, Change Management, Node Management, and Shared Resources. Learning to use this tool effectively can make you, as a DevOps professional, much more efficient, especially when implementing standards and checking for compliance in one or multiple AWS environments or accounts. And as automation and compliance demands increase from organizations, having a tool that can check for compliance, alert against discrepancies, and remediate violations can be essential in preventing environmental drift.
In this chapter, we're going to cover the following main topics:
- The various capabilities of AWS Systems Manager
- Using runbooks in Systems Manager
- AWS Config essentials