creating-ec2-image-builder-pipeline
aws/agent-toolkit-for-aws
Automate custom AMI creation with EC2 Image Builder pipelines, IAM roles, and cross-region distribution.
What is creating-ec2-image-builder-pipeline?
Creates a complete EC2 Image Builder pipeline that automates custom AMI builds with pre-installed software, distributes to target regions, and generates launch templates. Use this when you need to set up infrastructure-as-code for repeatable, versioned AMI creation with proper IAM configuration and build components.
- Sets up IAM roles and policies for Image Builder pipeline execution
- Defines build components and image recipes for custom AMI configuration
- Configures infrastructure settings and distribution to multiple AWS regions
- Executes the pipeline to build and distribute AMIs
- Creates launch templates from built images
- Manages the full lifecycle of custom AMI creation and versioning
How to install creating-ec2-image-builder-pipeline
npx skills add https://github.com/aws/agent-toolkit-for-aws --skill creating-ec2-image-builder-pipeline- AWS account with appropriate permissions for EC2 Image Builder, IAM, and EC2
- Familiarity with AWS IAM roles and policies
- Understanding of AMI concepts and EC2 instance types
How to use creating-ec2-image-builder-pipeline
- 1.Define the IAM roles and attach required policies for Image Builder execution
- 2.Create build components specifying software and configurations to install
- 3.Create an image recipe combining base image and build components
- 4.Configure infrastructure settings including instance type and VPC
- 5.Set up distribution configuration for target regions
- 6.Execute the pipeline to build the AMI
- 7.Verify the build completes successfully and AMI is available in target regions
- 8.Create a launch template from the built AMI for easy instance launching
Use cases
- Automating creation of standardized company AMIs with pre-installed software and security patches
- Building golden images for different application tiers (web, app, database servers)
- Distributing custom AMIs across multiple AWS regions for disaster recovery and global deployments
- Creating versioned AMI artifacts for infrastructure-as-code CI/CD pipelines
- Setting up self-service AMI builds for development teams without manual EC2 configuration
- AWS infrastructure engineers
- DevOps and platform teams
- Infrastructure-as-code practitioners
- Cloud architects designing AMI distribution strategies
creating-ec2-image-builder-pipeline FAQ
Use the exact ARN returned by API calls rather than constructing ARNs manually. Pipeline ARNs must follow the format arn:<partition>:imagebuilder:<region>:<account>:image-pipeline/<name>.
IAM changes are eventually consistent. Wait 10–15 seconds after creating the instance profile before using it in pipeline operations.
Delete the existing resource first or use a different name or version number for your pipeline components.
Verify the instance profile exists, all three required IAM policies are attached, and the specified instance type is available in your target region.
Full instructions (SKILL.md)
Source of truth, from aws/agent-toolkit-for-aws.
name: creating-ec2-image-builder-pipeline description: Creates a complete EC2 Image Builder pipeline that builds a custom AMI with pre-installed software, distributes it to target regions, executes the pipeline, and creates a launch template. Use when setting up automated AMI creation with IAM roles, build components, image recipes, and infrastructure configuration. version: 1
Creating an EC2 Image Builder Pipeline
Overview
Domain expertise for creating and managing EC2 Image Builder pipelines that automate custom AMI creation. Covers the full lifecycle: IAM role setup, build component definition, image recipe creation, infrastructure and distribution configuration, pipeline execution, and launch template creation.
Create an Image Builder pipeline
To create a complete EC2 Image Builder pipeline with custom AMI builds and cross-region distribution, follow the procedure exactly. See EC2 Image Builder pipeline procedure.
Troubleshooting
InvalidParameterValueException on pipeline operations
Use the exact ARN returned by API calls — do not construct ARNs manually. Pipeline
ARNs must follow arn:<partition>:imagebuilder:<region>:<account>:image-pipeline/<name>.
InstanceProfileNotFoundException
Wait 10–15 seconds after creating the instance profile before using it. IAM changes are eventually consistent.
ResourceAlreadyExistsException
Delete the existing resource first or use a different name/version.
Build instance fails to launch
Verify the instance profile exists, all three IAM policies are attached, and the instance type is available in the region.
Related skills
More from aws/agent-toolkit-for-aws and the wider catalog.

creating-production-vpc-multi-az
Create production-ready multi-AZ VPCs with public/private subnets, NAT gateways, and security groups.

creating-secrets-using-best-practices
Create and manage AWS Secrets Manager secrets with production-grade security controls and best practices.

debugging-lambda-timeouts
Systematically debug AWS Lambda timeout failures by analyzing configuration, logs, metrics, and dependencies.

deploying-custom-domain-rest-api
Deploy a Regional REST API with custom domain, Lambda backend, and request authorizer on AWS.

developing-applications-on-managed-service-for-apache-flink
Domain expertise for Apache Flink and Amazon Managed Service for Apache Flink development, deployment, and operations.

diff-scanning-with-aws-security-agent
Scan only changed code since a git ref for fast, focused security findings.