Medium
SageMaker
Regional
SageMaker models should have network isolation enabled
FSBP
Description
Verifies that SageMaker hosted models have network isolation enabled, preventing the model container from making outbound network calls.
Remediation
Enable network isolation for SageMaker models to restrict network access and prevent unintended exposure.
Steps
- Open the Amazon SageMaker console.
- Navigate to 'Models' in the left navigation pane.
- Select the model that needs remediation.
- Click on 'Edit' or 'Update'.
- Under 'Network isolation', enable 'Enable network isolation'.
- Save the model configuration.
Compliance
FSBP