AWS AWSEC2: Editorial/link formatting edits to application status checks topic
Summary
Replaces the "Contents" heading with "Topics", converts a bold user-guide reference to italics, and converts a plain-text reference to the Amazon EC2 API Reference into a hyperlink. The underlying security guidance text is unchanged; only markup and links were edited.
Security assessment
The only substantive change on this line is converting the trailing plain-text reference into a markdown hyperlink; the existing change-controlled IAM guidance (ec2:CreateApplicationStatusCheck, ec2:AssociateApplicationStatusCheck, etc.) is reworded only in link markup. No new security requirement, policy, or vulnerability fix is introduced, so this is a non-security/editorial change.
Evidence
+ * **Treat status check permissions as change-controlled.** The IAM actions that create, modify, delete, associate, disassociate, and suppress application status checks can affect instance availability. These actions determine what drives Amazon EC2 Auto Scaling replacement. Treat actions such as `ec2:CreateApplicationStatusCheck`, `ec2:AssociateApplicationStatusCheck`, `ec2:ModifyApplicationStatusCheck`, and `ec2:EnableApplicationStatusCheckSuppression` as change-controlled rather than granting them as part of general Amazon EC2 access. For the full list of actions, see the [Amazon EC2 API Reference](https://docs.aws.amazon.com/AWSEC2/latest/APIReference/Welcome.html).
Diff
diff --git a/AWSEC2/latest/UserGuide/application-status-checks.md b/AWSEC2/latest/UserGuide/application-status-checks.md index 912eede11..4f477d2a4 100644 --- a//AWSEC2/latest/UserGuide/application-status-checks.md +++ b//AWSEC2/latest/UserGuide/application-status-checks.md @@ -15 +15 @@ Application status checks monitor the HTTP and HTTPS responses of your applicati -###### Contents +###### Topics @@ -517 +517 @@ For instances running in AWS Local Zones, the managed elastic network interface - * **Protect against correlated failures.** An included check drives Amazon EC2 Auto Scaling replacement. A check that fails across many instances at once can trigger a wave of replacements. Set an instance maintenance policy on your Auto Scaling group to limit how many instances are replaced at the same time. For more information, see [Instance maintenance policy](https://docs.aws.amazon.com/autoscaling/ec2/userguide/ec2-auto-scaling-instance-maintenance-policy.html) in the Amazon EC2 Auto Scaling User Guide. + * **Protect against correlated failures.** An included check drives Amazon EC2 Auto Scaling replacement. A check that fails across many instances at once can trigger a wave of replacements. Set an instance maintenance policy on your Auto Scaling group to limit how many instances are replaced at the same time. For more information, see [Instance maintenance policy](https://docs.aws.amazon.com/autoscaling/ec2/userguide/ec2-auto-scaling-instance-maintenance-policy.html) in the _Amazon EC2 Auto Scaling User Guide_ . @@ -523 +523 @@ For instances running in AWS Local Zones, the managed elastic network interface - * **Treat status check permissions as change-controlled.** The IAM actions that create, modify, delete, associate, disassociate, and suppress application status checks can affect instance availability. These actions determine what drives Amazon EC2 Auto Scaling replacement. Treat actions such as `ec2:CreateApplicationStatusCheck`, `ec2:AssociateApplicationStatusCheck`, `ec2:ModifyApplicationStatusCheck`, and `ec2:EnableApplicationStatusCheckSuppression` as change-controlled rather than granting them as part of general Amazon EC2 access. For the full list of actions, see the Amazon EC2 API Reference. + * **Treat status check permissions as change-controlled.** The IAM actions that create, modify, delete, associate, disassociate, and suppress application status checks can affect instance availability. These actions determine what drives Amazon EC2 Auto Scaling replacement. Treat actions such as `ec2:CreateApplicationStatusCheck`, `ec2:AssociateApplicationStatusCheck`, `ec2:ModifyApplicationStatusCheck`, and `ec2:EnableApplicationStatusCheckSuppression` as change-controlled rather than granting them as part of general Amazon EC2 access. For the full list of actions, see the [Amazon EC2 API Reference](https://docs.aws.amazon.com/AWSEC2/latest/APIReference/Welcome.html).