A company's security team deploys a third-party firewall purchased from AWS Marketplace as an Amazon Machine Image (AMI) onto an Amazon EC2 instance. Under the AWS Shared Responsibility Model, who is responsible for applying software updates and security patches to this firewall?
- The customer, who maintains full control and responsibility for configuring and patching software deployed on their Amazon EC2 instances.Cevap
- BAWS, because any software purchased through the AWS Marketplace catalog is automatically managed and patched by AWS security teams.
- CThe third-party vendor, who gains administrative access to the customer's EC2 instance to perform routine security maintenance.
- DAWS, because purchasing the firewall through AWS Marketplace converts the customer's software maintenance operational expenses (OpEx) into a capital expense (CapEx) managed by AWS.
Cevap
The customer is responsible for applying software updates and security patches, as they maintain control of the software deployed on their EC2 instances.
The customer is responsible because deploying an AMI on Amazon EC2 means the software runs within the customer's boundary of the Shared Responsibility Model. The customer must configure and patch the operating system and applications they choose to run.
Adım Adım Çözüm
Anahtar Kavram
AWS Shared Responsibility Model applied to AWS Marketplace AMI deployments