Giter Site home page Giter Site logo

shouchou / cloudguard-cspm-continuous-onbaording Goto Github PK

View Code? Open in Web Editor NEW

This project forked from gbrembati/cloudguard-cspm-continuous-onboarding

0.0 0.0 0.0 10.05 MB

CloudGuard CSPM AWS Continuous onboarding using Lambda Function

Python 100.00%

cloudguard-cspm-continuous-onbaording's Introduction

CloudGuard CSPM AWS Continuous Onboarding

This project is intended to be used to continuously onboard an AWS Public Cloud Account in CloudGuard CSPM.
You can find the CloudFormation Template JSON files in this folder and the direct link to launch them in your system.
The IAM Role created are based on my latest CloudFormation Templates gbrembati / cloudguard-cspm-aws and the lambda code is based from the public Check Point Onboarding Scripts dome9 / onboarding-scripts

How to start?

At first, you will need to have a CloudGuard CSPM account; if you don't have it, you can create one with these links:

  1. Create an account in Europe Region
  2. Create an account in United States Region

Prerequisite

You will need to get the API credentials that you will be using by the Lambda Function to onboard the accounts. CSPM Service Account

Remember to copy these two values! You will need to enter them in the Stack Parameters later.

How to launch the template

Either copy the JSON file and then uploaded it to a newly created stack or launch the CloudFormation directly.
Use this link to Launch the CloudFormation in your AWS root account: Launch Stack

How to use the Template

Please insert all the needed parameters to the Stack:

  1. CloudGuardAPIID: The CloudGuard Service Access ID to use
  2. CloudGuardAPISecret: The CloudGuard Service Access Key to use
  3. CloudGuardMode: CloudGuard mode to onboard your AWS accounts as
  4. CloudGuardRegion: Where does your CloudGuard Tenant reside?
  5. LambdaRate: The frequency that determines when CloudWatch Events will trigger the Lambda function
  6. OrganizationRole: The IAM Role name to assume in each child account

Architecture Created

As per this CloudFormation stack the following architecture is then created:

AWS Architecture

cloudguard-cspm-continuous-onbaording's People

Contributors

gbrembati avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.