Bug fixes
- Guardrails failed to filter out real-time events for resource types if their parent resource types' CMDB policy was set to
Enforce: Disabled
. This is now fixed. - The
AWS > EC2 > Snapshot > Active
andAWS > EC2 > Snapshot > Approved
controls will now not attempt to delete a snapshot if it has one or more AMIs attached to it. - In the previous version, although we fixed a bug to prevent upserting volumes and snapshots with incorrect AKAs, there was still a provision for instances to be upserted with incorrect AKAs. We have now addressed this issue as well, ensuring instances are upserted more correctly and consistently than before.
- The deprecated
ec2-reports:*
permissions are now removed from the mod.