A company is using AWS Organizations to create separate AWS accounts for each of its departments. It needs to automate the following tasks:
- Updating the Linux AMIs with new patches periodically and generating a golden image
Installing a new version of Chef agents in the golden image, if available
- Enforcing the use of the newly generated golden AMIs in the department's account
Which option requires the LEAST management overhead?
