Securing HPC on AWS: implementing STIGs in AWS ParallelCluster
HPC Blog
This article discusses implementing Security Technical Implementation Guides (STIGs) in AWS ParallelCluster, which provides cloud-native methods for HPC customers to create STIG-compliant Amazon EC2 images.
Specifically, the article covers:
- What are STIGs and why customers want to implement them
- Two processes for creating STIG-compliant AMIs: applying STIGs after creating a ParallelCluster image, or installing ParallelCluster on a STIG-compliant "golden image"
- Steps for accelerating STIG compliance on RHEL8, Amazon Linux 2, and Ubuntu 20.04 instances, with and without internet connectivity
- OpenSCAP results showing the compliance levels before and after applying STIGs
- Instructions for running OpenSCAP scans on custom AMIs
- Using the STIG-compliant AMIs in a ParallelCluster configuration
The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.
Related articles
The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.