Fred Damstra 8669b0625d Fixes Select CIS Violations преди 5 години
..
000-mdradmin-bootstrap bfd862a953 Fixes source of common services modules. преди 5 години
001-tfstate 2c9985193b ccommon/aws/mdr-common-services matches reality. преди 5 години
004-iam-okta 04d4f1648f [MSOCI-1388] fixed a module path issue, these modules are still a little weird преди 5 години
006-account-standards 8669b0625d Fixes Select CIS Violations преди 5 години
006-account-standards-regional ca2cc26278 Brings common accounts up to standards преди 5 години
008-xdr-binaries ca2cc26278 Brings common accounts up to standards преди 5 години
010-public-dns 7ac324772a Delegates ai.accenturefederalcyber.com to route53 in that account преди 5 години
010-shared-ami-key ca2cc26278 Brings common accounts up to standards преди 5 години
015-security-vpc afccdd14f1 updates security vpc преди 5 години
019-qualys-service-account 99be472060 [MSOCI-1334] Adding Qualys connectors преди 5 години
README.md 671dc26b50 Initial Commit преди 5 години
account.hcl 7ac324772a Delegates ai.accenturefederalcyber.com to route53 in that account преди 5 години

README.md

README

I'm not sure if this is a helpful readme or not tbh

Authentication

A handful of these need the static access keys for the MDRAdmin account, mostly because at that point of setting up a new AWS account we don't have the okta integration in place.

Subfolders / subprojects

Subdirectory auth Purpose
000-mdradmin-bootstrap MDRAdmin + aws-mfa Configures MDRAdmin Account to have IAM rights to create terraform state
001-tfstate MDRAdmin + aws-mfa Creates TF state s3 bucket, dynamodb tables
005-iam okta + saml2aws Fundamental IAM setup - does OKTA linkage, sets up user roles and policies
common okta + saml2aws Variable / provider definitions used across multiple chunks