More Info:

AWS EC2 large instance changes should be monitored using CloudWatch alarms.

Risk Level

Low

Address

Cost optimization

Compliance Standards

AWSWAF

Triage and Remediation

Remediation

Here are the step-by-step instructions to remediate the “EC2 Large Instance Changes Alarm” misconfiguration in AWS using the AWS console:

  1. Open the AWS Management Console and navigate to the CloudWatch service.

  2. In the CloudWatch dashboard, click on the “Alarms” option from the left-hand menu.

  3. Find the alarm for “EC2 Large Instance Changes” and click on it.

  4. In the alarm details page, click on the “Actions” dropdown menu and select “Edit.”

  5. In the “Edit Alarm” page, you can adjust the alarm threshold to your desired value. For example, if you want to receive an alarm when the instance size is larger than an m4.xlarge, you can set the threshold to ”>= m4.xlarge.”

  6. After setting the threshold, click on the “Update Alarm” button to save your changes.

  7. Verify that the alarm threshold has been updated by checking the “Current State” column in the alarm list. If the state is “OK,” the alarm has been successfully remediated.

By following these steps, you have successfully remediated the “EC2 Large Instance Changes Alarm” misconfiguration for AWS using the AWS console.

Additional Reading: