AJ Kerrigan

Results 103 comments of AJ Kerrigan

I love the idea, floated it as a proposal in #8344 and at the time it seemed interesting without being particularly compelling to folks. But I also stopped at a...

> Also, your example got me thinking about allowing the use dynamic values for filtering. For example, we could resolve dynamic values from the resource being checked. Something like: >...

Hmm @mat-tordoff I dug back into this after you mentioned still seeing updates with c7n 0.9.38. I'm not seeing the code or config updates anymore, but if you are hopefully...

Ah interesting, nested traversal on iac resources sounds super handy :+1: For live AWS resources that seems like more magic than I'd try to wield 😅 ![source: https://www.britannica.com/topic/Fantasia-film](https://user-images.githubusercontent.com/19539955/223207160-11b8931f-bba3-4c96-b6be-968e048b7c88.png "mickey from...

Reopening to keep this as a tracking issue since the region preset only works around a subset of cases. I'm not clear on the best way forward though. Treating unresolvable...

Thanks for the report. The provisioning process does a number of delta checks to avoid unnecessary updates, but there's [no check ahead of those "AddPermissions" calls](https://github.com/cloud-custodian/cloud-custodian/blob/272fb58764c094023ef7dd5a56b2b865f7eb8216/c7n/mu.py#L1209-L1219) so they fire on...

Hi @AWSCloud21 - thanks for including the full error. Your periodic policy is checking all IAM managed policies in one shot rather than only the ones that changed. Because of...

> Is there a way for Custodian to understand newly created after it's last check? If you're trying to run this daily to catch recently-created policies, it might be useful...

Thanks for the report - would you be able to share the Terraform module you're scanning when you hit this error? Following the stack trace there it looks like it...