David Elliott

Results 48 comments of David Elliott

This has now been fixed

These are also currently raised by security hub

We have very few secrets and most would require quite a lot of work to rotate. We now have a manual process in place for rotating so closing this.

Looks like we can do this with PagerDuty - https://support.pagerduty.com/docs/aws-health-dashboard#integrate-with-a-pagerduty-service

We now get emails from AWS health for accounts we manage, and users get them directly. I think this is probably enough as any regional / AZ alerts which would...

Need to check the state of existing alerts and if there are any more we could add.

Could we update the bastion Autoscaling groups across the platform with a Lambda?

I think we should monitor the number of bastions running in the platform, and implement this once the number is greater than 32. Otherwise we are using more resources than...

https://github.com/ministryofjustice/modernisation-platform/pull/2841

Checked, this still needs to be implemented, although access keys for superadmins are deleted they are not for collaborators (only console access)