Amazon EC2
Connect Amazon EC2 to Iru Compliance Automation to collect instance inventory, security groups, and VPC network metadata as evidence.
Iru connects to AWS EC2 to read your actual network rules and server settings straight from AWS, instead of trusting a hand-drawn diagram. It pulls security group rules, instance metadata settings, and lifecycle activity directly.
Key Capabilities
- Verify network exposure is restricted at the security group level
- Confirm instance metadata is protected with IMDSv2
- Check that instance roles follow least privilege
- Track compute lifecycle changes back to who made them
Evidence Collected
- Security group ingress and egress rules
- Subnet routing and network ACLs
- AMI provenance
- Instance Metadata Service settings including IMDSv2
- Attached instance profiles and CloudTrail lifecycle activity