Disable copy and paste options in AWS SSM

0

Hi, We need to restrict any user cant copy from the ssm command terminal and paste into ssm command. How to avoid those feature in unix (none of the users) perform those activity.

Thanks

  • please accept the answer if it was useful

已提問 6 個月前檢視次數 389 次
1 個回答
1

Unfortunately, there is no built-in option in AWS SSM to directly disable copy and paste operations. However, you can achieve a higher level of control and restriction using IAM.

Ensure that only authorized users have access to start SSM sessions. Define an IAM policy that limits which users can access SSM sessions.

Example IAM Policy to Restrict SSM Session for instances with tag Environment: Production

{
    "Version": "2012-10-17",
    "Statement": [
        {
            "Effect": "Deny",
            "Action": [
                "ssm:SendCommand",
                "ssm:StartSession",
                "ssm:ResumeSession",
                "ssm:TerminateSession"
            ],
            "Resource": "*",
            "Condition": {
                "StringEquals": {
                    "ssm:ResourceTag/Environment": "Production"
                }
            }
        }
    ]
}
profile picture
專家
已回答 6 個月前
profile picture
專家
已審閱 5 個月前

您尚未登入。 登入 去張貼答案。

一個好的回答可以清楚地回答問題並提供建設性的意見回饋,同時有助於提問者的專業成長。

回答問題指南