Marc Jay
4bae0ca5f5
Merge branch 'master' into aws-security-hub-output-524
2020-04-11 03:16:23 +01:00
Marc Jay
5bab65c56d
- Remove securityhub output mode and replace with '-S' flag to send findings to Security Hub
...
- Move Security Hub related code to a dedicated include/securityhub_integration file
- Check that Security Hub is enabled in the target region before beginning checks when -S is specified
- Add error handling to the batch-import-findings call
- Add CHECK_ASFF_TYPE variables to all CIS checks to override the default
- Add support for CHECK_ASFF_RESOURCE_TYPE variables which override the default 'AwsAccount' value for the resource a finding relates to.
- Add CHECK_ASFF_RESOURCE_TYPE variables to all checks where there is a suitable value in the schema
- Remove json-asff output for info messages as they are not appropriate for possible submission to Security Hub
- Update the README to cover Security Hub integration
- Add an IAM policy JSON document that provides the necessary BatchImportFindings permission for Security Hub
- Remove trailing whitespace and periods in pass/fail messages to be consistent with the majority of messages, to prevent future tidy-up from changing the finding IDs
2020-04-11 03:04:03 +01:00
Toni de la Fuente
8f83da985a
PR #511
2020-04-08 18:00:54 +02:00
dhirajdatar
059c701923
Update README.md
2020-03-31 16:46:38 +05:30
Toni de la Fuente
1e1de4fa46
Added Security Hub integration link
2020-02-07 17:00:23 +01:00
Toni de la Fuente
24780b4caa
Improve documentation with prowler-additions-policy.json, issue #468
2020-01-30 22:23:53 +00:00
Toni de la Fuente
49ec898b9e
Update README.md
2020-01-08 09:14:21 +01:00
Ngọ Anh Đức
c2f541134b
Update README.md
...
Add jq package in requirements
2020-01-08 11:13:25 +07:00
Toni de la Fuente
53ea126065
Add native support for AssumeRole issue #445
2019-12-30 18:30:25 +01:00
Dom Bellizzi
f979c7334f
Add quiet mode that only logs failures
2019-12-18 22:06:44 +00:00
JohnVonNeumann
2da125ff8b
UPDATE README.md - fix incorrect group flag
...
To run prowler with the cislevelx group you use '-g', not '-c'
2019-12-12 11:28:52 +11:00
Toni de la Fuente
e18cea213b
consolidated ProwlerReadOnlyPolicy and available json
2019-11-22 12:42:57 +01:00
Toni de la Fuente
8f91bfee24
clean up documentation and added info to check_sample
2019-11-22 11:59:03 +01:00
Toni de la Fuente
a191a4eae6
consolidated ProwlerReadOnlyPolicy and available json
2019-11-22 11:41:13 +01:00
Toni de la Fuente
ce7e07d66d
consolidated ProwlerReadOnlyPolicy and available json
2019-11-22 11:29:16 +01:00
Jonathan Rau
73a5ee1bac
Update README.md
2019-11-21 12:38:31 -05:00
Jonathan Rau
0ff9806d70
Update README.md
2019-11-21 12:33:38 -05:00
zfLQ2qx2
3a893889b6
Misc prowler fixes
2019-11-13 22:49:32 -05:00
Toni de la Fuente
4f4591dc42
Added more install details and docker run
2019-10-29 23:36:39 +01:00
Roman Vynar
4540fd77e6
Add missing permission
2019-10-02 21:17:52 +03:00
Toni de la Fuente
04acb7412b
Enhanced requirements and installation
2019-09-12 19:13:52 -04:00
Brian Fallik
cd52bf8b7d
fix typo
2019-08-23 15:04:02 -04:00
Martin Kemp
e5e5e84112
Add documentation for excluding group checks
2019-07-10 13:15:10 +01:00
Ryan John Peck
8e71c6e5c5
Update README.md to clone from right repo
...
Looks like the project was moved out of an org to your personal account.
2019-05-13 13:56:12 -04:00
Marcus Maxwell
3290563716
Update README.md
2019-03-07 09:21:15 +00:00
Marcus Maxwell
4c0c6b181b
Update README.md
2019-03-07 09:18:57 +00:00
Marcus Maxwell
10a99aa5ae
Update README.md
...
-c is only for individual checks, need to use -g for level1 checks.
2019-03-07 09:11:12 +00:00
Toni de la Fuente
bc1271788c
Added MFA help to README issue #294
2019-03-04 22:45:15 -05:00
Toni de la Fuente
069b54057b
Fixed typo in hipaa
2019-02-11 09:08:05 -05:00
Toni de la Fuente
9bf3fd87ac
New POC scoring and extra741 key finder userdata
2019-02-08 16:47:12 +00:00
Toni de la Fuente
b59d5db16b
Added new opton exclude to README
2019-01-07 22:12:01 -05:00
Toni de la Fuente
31a0de167c
Adding extra340 to GDPR group
2018-11-27 00:07:19 -05:00
Toni de la Fuente
84c9b97c48
Merge branch 'master' into devel
2018-11-26 22:48:30 -05:00
Toni de la Fuente
d839b2fba1
Improved Prowler description
2018-11-19 23:54:42 -05:00
Toni de la Fuente
3f70c86736
Added info about GDPR and HIPAA
2018-11-19 23:39:17 -05:00
Toni de la Fuente
5757a88227
Added extra739 ELB logging and typos
2018-11-19 22:55:29 -05:00
Toni de la Fuente
83de86ca2c
fixed HIPAA typo
2018-11-15 14:38:05 -05:00
Toni de la Fuente
d14bdcc6c3
added option -L to list check groups
2018-11-14 20:38:02 -05:00
Toni de la Fuente
2437f8fb16
Added extra738 CloudFront HTTPS
2018-11-08 20:21:46 -05:00
Toni de la Fuente
fa5b81b28e
Added extra737 KMS keys rotation
2018-11-07 23:37:06 -05:00
Toni de la Fuente
b6a30df808
Added extra735 check encrypted RDS
2018-11-07 22:00:28 -05:00
Toni de la Fuente
9985e98cd3
Added more info for GDPR
2018-10-31 23:16:00 -04:00
Toni de la Fuente
c7bfd72d2d
Add check extra733 SAML Provider STS
2018-10-31 23:09:24 -04:00
Toni de la Fuente
2fd6f9801a
Added check extra731 SNS topics Public
2018-10-31 22:23:41 -04:00
Toni de la Fuente
4902d11614
Updated CIS version in Description
2018-10-31 21:32:50 -04:00
Toni de la Fuente
f1c46c28a0
Improved features section
2018-10-31 21:31:00 -04:00
jlamande@gmail.com
e49cf1fde7
Fix incremental policy
2018-10-19 09:04:32 +02:00
Daniel Petty
3e39bfd077
Add missing permission to example prowler policy
...
"support:describetrustedadvisorchecks"
2018-10-09 08:09:47 -06:00
Toni de la Fuente
e20b32da0c
Merge pull request #253 from slmingol/master
...
Fixed typos
2018-10-08 17:16:02 -04:00
Daniel Petty
04c627577b
Add missing permissions for prowler policy
2018-10-08 15:11:27 -06:00