Fred Damstra 1cbbd12e9d Updates account standards and account standards c2 to latest há 5 anos atrás
..
000-mdradmin-bootstrap e9366e6600 Merges mdr-common-services and afs-mdr-common-services-gov directories há 5 anos atrás
001-tfstate b88d35dda1 common/aws-us-gov/afs-mdr-common-services-gov now matches reality há 5 anos atrás
004-iam-okta 04d4f1648f [MSOCI-1388] fixed a module path issue, these modules are still a little weird há 5 anos atrás
006-account-standards 1cbbd12e9d Updates account standards and account standards c2 to latest há 5 anos atrás
006-account-standards-regional ca2cc26278 Brings common accounts up to standards há 5 anos atrás
008-xdr-binaries ca2cc26278 Brings common accounts up to standards há 5 anos atrás
010-shared-ami-key 1cbbd12e9d Updates account standards and account standards c2 to latest há 5 anos atrás
015-security-vpc afccdd14f1 updates security vpc há 5 anos atrás
016-panorama ca2cc26278 Brings common accounts up to standards há 5 anos atrás
017-palo-alto-bootstrap ca2cc26278 Brings common accounts up to standards há 5 anos atrás
018-palo-alto-firewalls ca2cc26278 Brings common accounts up to standards há 5 anos atrás
019-qualys-service-account 99be472060 [MSOCI-1334] Adding Qualys connectors há 5 anos atrás
021-qualys-connector-role fc7d842bb1 [MSOCI-1334] Picked up changes from code review há 5 anos atrás
README.md e9366e6600 Merges mdr-common-services and afs-mdr-common-services-gov directories há 5 anos atrás
account.hcl 99be472060 [MSOCI-1334] Adding Qualys connectors há 5 anos atrás

README.md

Common Services - GovCloud

I'm not sure if this is a helpful readme or not tbh

Authentication

A handful of these need the static access keys for the MDRAdmin account, mostly because at that point of setting up a new AWS account we don't have the okta integration in place.

Subfolders / subprojects

Subdirectory auth Purpose
000-mdradmin-bootstrap MDRAdmin + aws-mfa Configures MDRAdmin Account to have IAM rights to create terraform state
001-tfstate MDRAdmin + aws-mfa Creates TF state s3 bucket, dynamodb tables
005-iam okta + saml2aws Fundamental IAM setup - does OKTA linkage, sets up user roles and policies