首页 > 解决方案 > aws如何管理对ec2的iam ssh访问

问题描述

标签: amazon-web-servicesamazon-iam

解决方案


下面的 AMI 是您应该使用的,更新 CFT 并使用它

aws ssm get-parameter --name /aws/service/ami-amazon-linux-latest/amzn2-ami-hvm-x86_64-gp2 --region eu-west-2

{
    "Parameter": {
        "Name": "/aws/service/ami-amazon-linux-latest/amzn2-ami-hvm-x86_64-gp2",
        "Type": "String",
        "Value": "ami-098828924dc89ea4a",
        "Version": 38,
        "LastModifiedDate": "2021-01-27T07:52:29.948000+05:30",
        "ARN": "arn:aws:ssm:eu-west-2::parameter/aws/service/ami-amazon-linux-latest/amzn2-ami-hvm-x86_64-gp2",
        "DataType": "text"
    }
}

要获取最新的 Amazon Linux AMI 列表,请使用以下 ssm CLI

aws ssm get-parameters-by-path --path /aws/service/ami-amazon-linux-latest --query "Parameters[].Name" --region eu-west-2
    [
        "/aws/service/ami-amazon-linux-latest/amzn-ami-hvm-x86_64-ebs",
        "/aws/service/ami-amazon-linux-latest/amzn-ami-hvm-x86_64-gp2",
        "/aws/service/ami-amazon-linux-latest/amzn-ami-hvm-x86_64-s3",
        "/aws/service/ami-amazon-linux-latest/amzn-ami-minimal-hvm-x86_64-ebs",
        "/aws/service/ami-amazon-linux-latest/amzn-ami-minimal-hvm-x86_64-s3",
        "/aws/service/ami-amazon-linux-latest/amzn2-ami-hvm-arm64-gp2",
        "/aws/service/ami-amazon-linux-latest/amzn2-ami-hvm-x86_64-ebs",
        "/aws/service/ami-amazon-linux-latest/amzn2-ami-hvm-x86_64-gp2",
        "/aws/service/ami-amazon-linux-latest/amzn2-ami-minimal-hvm-arm64-ebs",
        "/aws/service/ami-amazon-linux-latest/amzn2-ami-minimal-hvm-x86_64-ebs"
    ]

推荐阅读