automated-security-response-on-aws
automated-security-response-on-aws copied to clipboard
Automated Security Response on AWS is an add-on solution that works with AWS Security Hub to provide a ready-to-deploy architecture and a library of automated playbooks. The solution makes it easier f...
Hi, I was trying to install AWS SHARR templates in one of our accounts. It is failing due to a rate limitation on the Systems manager. How do we prevent...
**Describe the bug** SetSSLBucketPolicy.py always uses "aws" partition, causing remediate to fail in GovCloud: https://github.com/aws-solutions/aws-security-hub-automated-response-and-remediation/blob/main/source/remediation_runbooks/scripts/SetSSLBucketPolicy.py **To Reproduce** 1. Create SHARR stacks in GovCloud 2. Select a Security Hub Finding for...
**Describe the bug** Member stack deployment fails in ap-northeast-3. **To Reproduce** When deploying a member stack to ap-northeast-3, the following error message was displayed and the deployment failed. ``` Error...
**Is your feature request related to a problem? Please describe.** I integrated Security Hub with [Prowler ](https://github.com/prowler-cloud/prowler) which is an open-source cloud security assessment tool. I created a separate custom...
I see lots of examples here where the note text references things from {{ParseInput.xxxxxx}} but no examples of dynamic text referencing something from a child remediation document. My use case...
hello Team, I would like to know is there any possibility to build the manual remediation function for Security hub members' accounts as well ? I believe currently it's only...
**Describe the bug** List of unused security groups does not take into account groups which are referenced as source or destination in other groups. It appears that currently a group...
**Describe the bug** Service-managed StackSet deployment (step 3 option 2) doesn't ask for 'LogGroup Configuration' like step 3 option 1 does. **To Reproduce** Follow steps for automated StackSet deployment (https://docs.aws.amazon.com/solutions/latest/aws-security-hub-automated-response-and-remediation/deployment-stackset.html)....
Fix #47 By submitting this pull request, I confirm that you can use, modify, copy, and redistribute this contribution, under the terms of your choice.
**Is your feature request related to a problem? Please describe.** While working with the auto-remediations, I discovered a requirement to be able to specify a KMS key to be used...