This cdk package installs a Lambda function, with an associated IAM role, and subscribes the Lambdafunction to Control Tower aggregate security notifications. In the event of a Control Tower rule violation(e.g. publicly accessible S3 bucket), the Lambda sends a notification to a web hook.
- Admin access to the organization. This is used to assume the control tower role in the audit account
- AWS CDK installed
- Version 2 of theAWS Cli
To enable the notifications on a mac or linux, run theinstall.sh
script as an administrative user.The script takes 3 parameters
- The aws account account number
- The webhook URL the notifications will be posted too
- Optional name of Gaurdrail configRuleName(s) you want notification for. Separate multiple rules with comma. Use ALL_RULES for notifciation of all Guardrails
sample command line:
. install.sh 123456789012 https://mywebhookURL ALL_RULES
To enable the notifications on a windows machine, frominstall.ps1
from a powershell window.The script takes 3 parameters
- The aws account account number
- The webhook URL the notifications will be posted too
- Optional name of Gaurdrail configRuleName(s) you want notification for. Separate multiple rules with comma. Use ALL_RULES for notifciation of all Guardrails
Sample command line:
.\install.ps1 -AWSAduitAccountNumber '123456789012' -WebHookURL 'https://mywebhookURL.com/' -RuleFilter ALL_RULES
PinnedLoading
- configuratse
configuratse PublicAn Ansible collection that installs an SCCM deployment with optional configurations.
CSS
- HydranHistory
HydranHistory PublicTypeScript
- Ukrainian
Ukrainian PublicThis crate provides an Egui integration for the Bevy game engine. 🇺🇦 Please support the Ukrainian army: https://savelife.in.ua/en/
Objective-C
If the problem persists, check theGitHub status page orcontact support.
Uh oh!
There was an error while loading.Please reload this page.