Skip to content

DOCS-107 - CIS for AWS CloudQuery - onboarding improvements #4209

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Merged
merged 53 commits into from
Oct 21, 2024
Merged
Show file tree
Hide file tree
Changes from 3 commits
Commits
Show all changes
53 commits
Select commit Hold shift + click to select a range
4e30380
CloudQuery GA
jpipkin1 Jun 13, 2024
a240136
Change release note date to Aug 1 2024
jpipkin1 Jun 13, 2024
149dcfa
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Jun 20, 2024
d2600c8
Update blog-service/2024-08-01-apps.md
jpipkin1 Jul 1, 2024
0aed81a
Update docs/security/cloud-infrastructure-security/cloud-infrastructu…
jpipkin1 Jul 1, 2024
5d4c956
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Jul 18, 2024
6e82514
Remove CloudQuery from CIS for AWS
jpipkin1 Aug 13, 2024
abe706b
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Aug 13, 2024
2e67bef
Remove CloudQuery source articles
jpipkin1 Aug 14, 2024
a84a162
Change redirects
jpipkin1 Aug 14, 2024
0244cb9
Remove downloadable files for CloudQuery sources
jpipkin1 Aug 15, 2024
f18bf08
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Aug 16, 2024
53914f7
Update installation steps
jpipkin1 Aug 16, 2024
e4deea9
Fix spelling mistake
jpipkin1 Aug 16, 2024
5fa3e2e
Add back the release note
jpipkin1 Aug 16, 2024
9f49961
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Aug 21, 2024
476fee4
Updates from meeting with Arpit
jpipkin1 Aug 21, 2024
b451384
Update blog-service/2024-08-23-apps.md
jpipkin1 Aug 21, 2024
0116f74
Update docs/security/cloud-infrastructure-security/cloud-infrastructu…
jpipkin1 Aug 21, 2024
a2fb700
Fix broken links
jpipkin1 Aug 21, 2024
73eba97
Minor updates
jpipkin1 Aug 26, 2024
4915f2b
Change release note date to Sept 6 2024
jpipkin1 Aug 28, 2024
58ccd9a
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Aug 28, 2024
2fcec29
Add multi-region enablement section
jpipkin1 Aug 29, 2024
2375814
Removed extra heading
jpipkin1 Aug 29, 2024
53d4ec8
Add missing word
jpipkin1 Aug 29, 2024
3fe06e5
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Sep 4, 2024
bf68279
Cleanup per Ankit Goel review
jpipkin1 Sep 5, 2024
a02b58b
New screenshots
jpipkin1 Sep 5, 2024
75144ca
Add monitors
jpipkin1 Sep 5, 2024
0e62801
Add saved searches
jpipkin1 Sep 6, 2024
ca2b7cd
Remove note about automated playbooks
jpipkin1 Sep 6, 2024
242c718
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Sep 10, 2024
bb46711
Change release note date to Sept 12 2024
jpipkin1 Sep 10, 2024
5370c4a
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Sep 11, 2024
a60be08
Fix RSS icon
jpipkin1 Sep 11, 2024
fe2bda8
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Sep 17, 2024
c160f9e
Updates per SME review
jpipkin1 Sep 18, 2024
51f7879
Fix GuardDuty images
jpipkin1 Sep 24, 2024
c25d2ab
Remove cloudquery-source.md and clouodquery-gcp-source.md files
jpipkin1 Sep 24, 2024
0bde3ca
Fix broken anchor links
jpipkin1 Sep 24, 2024
2a1d100
Fix another broken anchor link
jpipkin1 Sep 24, 2024
0906aa4
Updates for CONN-3530
jpipkin1 Sep 24, 2024
269074f
Change release note date to Oct 3 2024
jpipkin1 Oct 1, 2024
0ef69e2
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Oct 2, 2024
3f5ddf3
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Oct 14, 2024
3090d1c
Change release note date to October 14 2024
jpipkin1 Oct 14, 2024
174644a
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Oct 15, 2024
6b4d570
Change release note date
jpipkin1 Oct 15, 2024
fc294bb
Change release note date to Oct 18 2024
jpipkin1 Oct 18, 2024
db51f59
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Oct 18, 2024
dd9f59d
Change release note date to Oct 21 2024
jpipkin1 Oct 21, 2024
9432d24
Merge branch 'main' into docs-107-cloudquery-ga
jpipkin1 Oct 21, 2024
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
26 changes: 26 additions & 0 deletions blog-service/2024-08-01-apps.md
Original file line number Diff line number Diff line change
@@ -0,0 +1,26 @@
---
title: Expanding Cloud Infrastructure Security for AWS Capabilities (Apps)
image: https://help.sumologic.com/img/sumo-square.png
keywords:
- apps
- app catalog
- aws
- cloud infrastructure security
hide_table_of_contents: true
authors:
- url: https://help.sumologic.com/release-notes-service/rss.xml
image_url: /img/release-notes/rss-orange.png
---

We're excited to announce the general availability of new capabilities in Cloud Infrastructure for AWS. These capabilities were [previously only available in a preview form](/release-notes-service/2024/05/13/apps/). They are now available for general use.

You now have increased visibility into your AWS Cloud environment with the following new features:
* **Out-of-the-box security policy checks**. Sumo Logic Cloud Infrastructure Security is now configured by default to use the out-of-the box policy checks. You can now choose to leverage the out-of-the-box policy checks instead of, or in conjunction with, the policy checks provided by AWS Security Hub.
* **Additional investigation capabilities**. The update includes the addition of three new dashboards:
* [**Infrastructure Overview**](/docs/security/cloud-infrastructure-security/cloud-infrastructure-security-for-aws/#infrastructure-overview). Get deep visibility into your cloud infrastructure to understand how many cloud resources are running and their configurations.
* [**Security Control Failures Overview**](/docs/security/cloud-infrastructure-security/cloud-infrastructure-security-for-aws/#security-control-failures-overview). See misconfigurations in your environment that may leave you vulnerable to attackers.
* [**Security Control Failures Investigation**](/docs/security/cloud-infrastructure-security/cloud-infrastructure-security-for-aws/#security-control-failures-investigation). Navigate and prioritize the most important misconfigurations in your environment.
* **AI-powered remediation plans**. You can now use automated remediation playbooks built specifically for Cloud Infrastructure Security for AWS.

[Learn more](/docs/security/cloud-infrastructure-security/cloud-infrastructure-security-for-aws/).

Original file line number Diff line number Diff line change
Expand Up @@ -359,7 +359,7 @@ In this step, you perform the steps needed to deploy the Cloud Infrastructure Se
<details>
<summary>CloudQuery</summary>

In this section, you have the choice to create a [CloudQuery source](/docs/send-data/hosted-collectors/cloud-to-cloud-integration-framework/cloudquery-source) in Sumo Logic. (This functionality is in [preview](/release-notes-service/2024/05/13/apps/). If you would like to know more about the feature, reach out to your Sumo Logic Account Executive.)
In this section, you have the choice to create a [CloudQuery source](/docs/send-data/hosted-collectors/cloud-to-cloud-integration-framework/cloudquery-source) in Sumo Logic.

If fields are missing, or you need to change them, do the following:
* **8.1 Configure CloudQuery C2C Source**
Expand Down Expand Up @@ -512,7 +512,7 @@ The **Cloud SIEM Insights Overview** dashboard runs advanced threat detection (C
The **Infrastructure Overview** dashboard helps you identify all accounts, services, and resources within your cloud environment. It helps you get deep visibility into your cloud infrastructure to understand how many cloud resources are running and their configurations.

:::note
This dashboard is in [preview](/release-notes-service/2024/05/13/apps/). To see data in this dashboard, you must install the CloudQuery source in section 8.1 of the CloudFormation Template when you [deploy the solution](#step-3-deploy-aws). If you see only empty panels in the dashboard and would like to know more about the feature, reach out to your Sumo Logic Account Executive.
To see data in this dashboard, you must install the CloudQuery source in section 8.1 of the CloudFormation Template when you [deploy the solution](#step-3-deploy-aws).
:::

<img src={useBaseUrl('img/integrations/amazon-aws/cis-for-aws-infrastructure-overview.png')} alt="Infrastructure Overview dashboard" style={{border: '1px solid gray'}} width="600"/>
Expand All @@ -532,7 +532,7 @@ The **Security Control Failures - AWS Security Hub** dashboard shows resources t
The **Security Control Failures Overview** dashboard shows you misconfigurations in your environment that may leave you vulnerable to attackers. These checks are run natively by Sumo Logic to find blind spots in your AWS infrastructure.

:::note
This dashboard is in [preview](/release-notes-service/2024/05/13/apps/). To see data in this dashboard, you must install the CloudQuery source in section 8.1 of the CloudFormation Template when you [deploy the solution](#step-3-deploy-aws). If you see only empty panels in the dashboard and would like to know more about the feature, reach out to your Sumo Logic Account Executive.
To see data in this dashboard, you must install the CloudQuery source in section 8.1 of the CloudFormation Template when you [deploy the solution](#step-3-deploy-aws).
:::

<img src={useBaseUrl('img/integrations/amazon-aws/cis-for-aws-security-control-failures-overview.png')} alt="Security Control Failures Overview dashboard" style={{border: '1px solid gray'}} width="600"/>
Expand All @@ -542,7 +542,7 @@ This dashboard is in [preview](/release-notes-service/2024/05/13/apps/). To see
The **Security Control Failures Investigation** dashboard provides a detailed view for the [**Security Control Failures Overview**](#security-control-failures-overview) dashboard and helps you navigate and prioritize the most important misconfigurations in your environment.

:::note
This dashboard is in [preview](/release-notes-service/2024/05/13/apps/). To see data in this dashboard, you must install the CloudQuery source in section 8.1 of the CloudFormation Template when you [deploy the solution](#step-3-deploy-aws). If you see only empty panels in the dashboard and would like to know more about the feature, reach out to your Sumo Logic Account Executive.
To see data in this dashboard, you must install the CloudQuery source in section 8.1 of the CloudFormation Template when you [deploy the solution](#step-3-deploy-aws).
:::

<img src={useBaseUrl('img/integrations/amazon-aws/cis-for-aws-security-control-failures-investigation.png')} alt="Security Control Failures Investigation dashboard" style={{border: '1px solid gray'}} width="600"/>
Expand Down
Original file line number Diff line number Diff line change
@@ -1,6 +1,6 @@
---
id: cloudquery-source
title: CloudQuery Source (Beta)
title: CloudQuery Source
sidebar_label: CloudQuery
tags:
- cloud-to-cloud
Expand All @@ -17,13 +17,6 @@ import AccountTFExample from '!!raw-loader!/files/c2c/cloudquery/accountExample.
import OrgTFExample from '!!raw-loader!/files/c2c/cloudquery/orgExample.tf';
import useBaseUrl from '@docusaurus/useBaseUrl';


<head>
<meta name="robots" content="noindex" />
</head>

<p><a href="/docs/beta"><span className="beta">Beta</span></a></p>

<img src={useBaseUrl('img/send-data/cloudquery-logo.png')} alt="cloudquery-icon" width="70" />

The CloudQuery integration is used to pull inventory from the AWS APIs and transform them into the CloudQuery schema and send it to Sumo Logic.
Expand Down
2 changes: 1 addition & 1 deletion sidebars.ts
Original file line number Diff line number Diff line change
Expand Up @@ -270,7 +270,7 @@ module.exports = {
'send-data/hosted-collectors/cloud-to-cloud-integration-framework/citrix-cloud-source',
'send-data/hosted-collectors/cloud-to-cloud-integration-framework/cse-aws-ec-inventory-source',
'send-data/hosted-collectors/cloud-to-cloud-integration-framework/cloud-to-cloud-source-versions',
//'send-data/hosted-collectors/cloud-to-cloud-integration-framework/cloudquery-source',
'send-data/hosted-collectors/cloud-to-cloud-integration-framework/cloudquery-source',
'send-data/hosted-collectors/cloud-to-cloud-integration-framework/code42-incydr-source',
'send-data/hosted-collectors/cloud-to-cloud-integration-framework/crowdstrike-source',
'send-data/hosted-collectors/cloud-to-cloud-integration-framework/crowdstrike-fdr-source',
Expand Down
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading
Sorry, something went wrong. Reload?
Sorry, we cannot display this file.
Sorry, this file is invalid so it cannot be displayed.
Loading