or deleting instances. It is hard to update the scan target (update the configuration file). • You do not need to scan all servers. • If we have servers of the same configuration (e.g. Web server) that use server configuration tools (chef, ansible etc), may be scanned only one of them. • I would like to find automatically the scan target by describing tags like Amazon Inspector.
$ export AWS_ACCESS_KEY_ID=ACCESS_KEY_ID • $ export AWS_SECRET_ACCESS_KEY=ECRET_ACCESS_KEY • $ export AWS_REGION=us-east-1 • Set the tag to EC2 instance that you want to scan ɾ Name: Name of server. e.g. web-server-1 ɾ Vuls-Scan (Default): Scan target. e.g. Vuls-Scan:True
for Vuls in Amazon EC2. • It is convenient to scan target by setting EC2 tag. I have been using frequently :-). • Please give me the star of GitHub if you think good.