Systems Manager

AWS Systems Manager 筆記。

SSM

  • Helps you manage your EC2 and On-Premises systems at scale
  • Another Hybrid AWS service
  • Get operational insights about the state of your infra
  • Most Important features:
    • Patching automation for enhanced compliance
    • Run commands across an entire fleet of servers
    • Store parameter configuration with the SSM Parameter Store
  • SSM Agent installed by default on Amazon Linux AMI and Ubuntu AMI
Systems Manager Agent

Session Manager

  • Allows you to start a secure shell on your EC2 and on-premises servers
  • No SSH access, bastion hosts, or SSH keys needed
  • No port 22 needed (better security)
  • Send session log data to S3 or CloudWatch Logs
  flowchart LR
	U[User]
	SM[Session Manager]
	Ins[EC2 Instance+SSM Agent]

	U ---->|IAM Permissions| SM ---->|Execute Commands| Ins