- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
07-25-2025 07:55 AM - edited 07-25-2025 09:57 AM
Hello,
How well does Prisma Cloud agentless scan works on non-standard AMIs like AWS's Bottlerocket?
From tests on our side it shows 0 vulnerabilities detected, but I am not sure if these results are correct because of the nature of the system
It is right? Or Prisma is not capable of scanning it?
07-28-2025 02:03 PM
Hello,
Agentless scanning for vulnerabilities and compliance is supported on Bottlerocket OS, but limited to x86 architecture. Bottlerocket instances on AWS are designed to have two disks by default
Agentless scans the data disk as it contains the dynamic data. No Compliance scan as Prisma Cloud doesn't scan the root disk
Can you check and confirm those bottlerocket instances have a data disk?
Let us know if you have any other questions.
Regards,
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!