Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Product Name

CIS Hardened Images® (AWS)

Product Version

CIS STIG Benchmarks

Date



Problem

Info

We have a CIS Amazon Linux 2 STIG Benchmark AMI’s through the AWS Marketplace for both our Commercial and GovCloud EC2 instances. We are unable to get the Amazon Inspector Agent to successfully install on these instances.
Can you provide instructions on how we can get the Inspector Agent successfully installed and running on these instances?

Solution

On our AWS STIG Images, we have gpg checking enabled when installing packages with rpm. This setting is in /etc/yum.conf - localpkg_gpgcheck=1 . You won't be able to install an unsigned package if you don't have the key from AWS.

If you wish to turn off our recommendation, you can go into yum.conf and set 1 to 0.


Copyright © 2020

Center for Internet Security®


Page Properties
hiddentrue
idDetails

What

Who

date

Updated by

Amanda McGown

  • Changed certain words to ‘code'

  • Needs to be tested still