ecr-private-image-scanning-enabled - AWS Config

ecr-private-image-scanning-enabled

Checks if a private Amazon Elastic Container Registry (Amazon ECR) repository has image scanning enabled. The rule is NON_COMPLIANT if the private Amazon ECR repository's scan frequency is not on scan on push or continuous scan. For more information on enabling image scanning, see Image scanning in the Amazon ECR User Guide.

Identifier: ECR_PRIVATE_IMAGE_SCANNING_ENABLED

Resource Types: AWS::ECR::Repository

Trigger type: Periodic

AWS Region: All supported AWS regions

Parameters:

None

AWS CloudFormation template

To create AWS Config managed rules with AWS CloudFormation templates, see Creating AWS Config Managed Rules With AWS CloudFormation Templates.