Critical SSM Regional

SSM documents should not be public

NIST

Description

Flags account-owned SSM documents that are publicly shared, which may expose sensitive configuration information.


Remediation

To block public sharing for SSM documents, refer to the AWS Systems Manager User Guide.

Steps

  1. Access the AWS Systems Manager console.
  2. Navigate to the SSM documents section.
  3. Identify and modify the sharing settings of public documents.
  4. Ensure that the documents are not publicly accessible.

Compliance

NIST