Fred Damstra 8669b0625d Fixes Select CIS Violations 5 vuotta sitten
..
000-mdradmin-bootstrap bfd862a953 Fixes source of common services modules. 5 vuotta sitten
001-tfstate 2c9985193b ccommon/aws/mdr-common-services matches reality. 5 vuotta sitten
004-iam-okta 04d4f1648f [MSOCI-1388] fixed a module path issue, these modules are still a little weird 5 vuotta sitten
006-account-standards 8669b0625d Fixes Select CIS Violations 5 vuotta sitten
006-account-standards-regional ca2cc26278 Brings common accounts up to standards 5 vuotta sitten
008-xdr-binaries ca2cc26278 Brings common accounts up to standards 5 vuotta sitten
010-public-dns 7ac324772a Delegates ai.accenturefederalcyber.com to route53 in that account 5 vuotta sitten
010-shared-ami-key ca2cc26278 Brings common accounts up to standards 5 vuotta sitten
015-security-vpc afccdd14f1 updates security vpc 5 vuotta sitten
019-qualys-service-account 99be472060 [MSOCI-1334] Adding Qualys connectors 5 vuotta sitten
README.md 671dc26b50 Initial Commit 5 vuotta sitten
account.hcl 7ac324772a Delegates ai.accenturefederalcyber.com to route53 in that account 5 vuotta sitten

README.md

README

I'm not sure if this is a helpful readme or not tbh

Authentication

A handful of these need the static access keys for the MDRAdmin account, mostly because at that point of setting up a new AWS account we don't have the okta integration in place.

Subfolders / subprojects

Subdirectory auth Purpose
000-mdradmin-bootstrap MDRAdmin + aws-mfa Configures MDRAdmin Account to have IAM rights to create terraform state
001-tfstate MDRAdmin + aws-mfa Creates TF state s3 bucket, dynamodb tables
005-iam okta + saml2aws Fundamental IAM setup - does OKTA linkage, sets up user roles and policies
common okta + saml2aws Variable / provider definitions used across multiple chunks