Remediation Center

更新时间:
复制 MD 格式

The Remediation Center is a centralized portal for remediating check items. It provides three core features: single-item remediation, batch remediation, and Remediation History.

Single-item remediation

Use single-item remediation to address check items one by one.

  1. Log on to the Agentic Cloud Governance Center console.

  2. In the left-side navigation pane, choose Well-Architected Framework > Remediation Center to open the check item remediation page.

    The left pane lists check items by category, such as Identity & Access Security, Expiration & Deletion Risks, and Idle & Underutilized Resources. Select a check item to view the estimated score increase and dimension-based tabs on the right. Select a target tab to view affected resources. Select resources and click Start Fix. Review the precautions in the yellow notification bar before proceeding.

  3. Browse or search for check items in the left pane. The search supports fuzzy keyword matching, for example, "identity".

    If the image.png Quick Fix icon appears next to a check item, it supports Quick Fix.

    Results are grouped by category. A red or orange icon indicates the risk level. Click a check item to view its details.

  4. Click the name of a check item to open the remediation workspace.

  5. If the check item supports Quick Fix, select resources and click Start Fix at the bottom of the workspace. Click Start Fix and confirm the action to run the automated remediation task.

    If some resources do not support Quick Fix, they cannot be selected. When you hover over the Start Fix button, a message appears: "These resources do not support Quick Fix. Follow the manual remediation guide to resolve the risk".

    For these resources, follow the provided guide to perform manual remediation.

  6. After remediation completes, click Remediation History in the upper-right corner to view remediation records on the Remediation History tab.

    Note

    The Remediation History only records Quick Fix operations, not manual remediation actions.

Batch remediation

Use batch remediation to fix multiple check items that support Quick Fix at once.

Note

Batch remediation applies only to items that support Quick Fix. Remediate all other items manually.

  1. Log on to the Agentic Cloud Governance Center console.

  2. In the left-side navigation pane, choose Well-Architected Framework > Remediation Center to open the check item remediation page.

  3. Click the image.png icon to the right of the filter box to switch to batch remediation mode.

    In batch mode, tabs at the top group check items by category. The upper-right corner shows the Estimated Maximum Score Increase. Select a check item to view affected resources in the Resource List below, with columns such as User ID/Display Name, Resource Type, and Number of AccessKeys. Select resources or click Select All, then click Start Fix.

  4. In batch remediation mode:

    1. The upper-right corner shows the estimated total score increase for selected check items.

    2. Click a governance topic name to add all its check items to the workspace.

    3. The bottom shows the number of selected check items and resources.

  5. Select check items, fill in the required parameters, and click Next: Preview to open the Remediation Preview page.

  6. Review the remediation list and impact scope on the preview page. Confirm the information and click Start Fix to begin batch remediation.

  7. After remediation completes, click Remediation History in the upper-right corner to view remediation records on the Remediation History tab.

Remediation history

  1. Log on to the Agentic Cloud Governance Center console.

  2. In the left-side navigation pane, choose Well-Architected Framework > Remediation Center to open the check item remediation page.

  3. Click the Remediation History button in the upper-right corner to go to the Remediation History page.

  4. The Remediation History page lists all automated remediation records. Click View Details on a task to see its details.

    Filter tasks by Remediation Item Name, Status, Operator, or Time Range. The list shows columns for Remediation Item Name, Start Time, End Time, Number of Remediated Resources, Operator, Status, and Actions. Expand batch tasks to view sub-item results.

    The task details dialog shows the Operator, Status, Start Time, and End Time. The resource list displays each item with its Remediation Item Name, Resource ID/Resource Type, account UID, Status, Start/End Time, and Actions. You can search by resource ID or filter by status and time range.

Learn how automated remediation works in Quick Fix for check items.

Agentic Governance remediation items

Agentic governance remediation items are displayed under the Agentic Governance tab in the Remediation Center. Use the Cloud Governance / Agentic Governance tab at the top of the page to switch between the two check systems.

Agentic governance remediation items currently require manual remediation. Each check item provides documentation-based remediation guidance to help you resolve the identified risks.

Note

Automated quick-fix capabilities for Agentic governance check items will be gradually available as AI product capabilities evolve.

Recheck

After remediation, a prompt appears in the upper-right corner of the Remediation Center page. Click Recheck to run a new scan and update your governance maturity score.

Rechecking can take several minutes. We recommend running it only after you finish all remediation tasks.