Skip to content

Commit e989da3

Browse files
committed
Update README files
1 parent dda2bb8 commit e989da3

File tree

1 file changed

+60
-60
lines changed

1 file changed

+60
-60
lines changed

README.md

Lines changed: 60 additions & 60 deletions
Original file line numberDiff line numberDiff line change
@@ -25,39 +25,39 @@ This module is composed of several submodules and each of which can be used inde
2525

2626
| Name | Version |
2727
|------|---------|
28-
| terraform | >= 1.1.4 |
29-
| aws | >= 4.1.0 |
30-
| time | >= 0.7.2 |
28+
| <a name="requirement_terraform"></a> [terraform](#requirement\_terraform) | >= 1.1.4 |
29+
| <a name="requirement_aws"></a> [aws](#requirement\_aws) | >= 4.1.0 |
30+
| <a name="requirement_time"></a> [time](#requirement\_time) | >= 0.7.2 |
3131

3232
## Providers
3333

3434
| Name | Version |
3535
|------|---------|
36-
| aws | 4.2.0 |
36+
| <a name="provider_aws"></a> [aws](#provider\_aws) | 4.2.0 |
3737

3838
## Modules
3939

4040
| Name | Source | Version |
4141
|------|--------|---------|
42-
| baseline\_ebs\_eu-west-1 | ./modules/baseline_ebs | n/a |
43-
| baseline\_ebs\_us-east-1 | ./modules/baseline_ebs | n/a |
44-
| baseline\_ebs\_us-east-2 | ./modules/baseline_ebs | n/a |
45-
| baseline\_ecr\_eu-west-1 | ./modules/baseline_ecr | n/a |
46-
| baseline\_ecr\_us-east-1 | ./modules/baseline_ecr | n/a |
47-
| baseline\_ecr\_us-east-2 | ./modules/baseline_ecr | n/a |
48-
| baseline\_iam | ./modules/baseline_iam | n/a |
49-
| baseline\_s3 | ./modules/baseline_s3 | n/a |
50-
| firewall\_manager\_us-east-1 | ./modules/firewall_manager | n/a |
51-
| guardduty-eu-west-1 | ./modules/guardduty | n/a |
52-
| guardduty-us-east-1 | ./modules/guardduty | n/a |
53-
| guardduty-us-east-2 | ./modules/guardduty | n/a |
54-
| iam\_access\_analyzer-eu-west-1 | ./modules/iam_access_analyzer | n/a |
55-
| iam\_access\_analyzer-us-east-1 | ./modules/iam_access_analyzer | n/a |
56-
| iam\_access\_analyzer-us-east-2 | ./modules/iam_access_analyzer | n/a |
57-
| s3\_bucket-us-east-1 | ./modules/s3_bucket | n/a |
58-
| securityhub\_eu-west-1 | ./modules/securityhub | n/a |
59-
| securityhub\_us-east-1 | ./modules/securityhub | n/a |
60-
| securityhub\_us-east-2 | ./modules/securityhub | n/a |
42+
| <a name="module_baseline_ebs_eu-west-1"></a> [baseline\_ebs\_eu-west-1](#module\_baseline\_ebs\_eu-west-1) | ./modules/baseline_ebs | n/a |
43+
| <a name="module_baseline_ebs_us-east-1"></a> [baseline\_ebs\_us-east-1](#module\_baseline\_ebs\_us-east-1) | ./modules/baseline_ebs | n/a |
44+
| <a name="module_baseline_ebs_us-east-2"></a> [baseline\_ebs\_us-east-2](#module\_baseline\_ebs\_us-east-2) | ./modules/baseline_ebs | n/a |
45+
| <a name="module_baseline_ecr_eu-west-1"></a> [baseline\_ecr\_eu-west-1](#module\_baseline\_ecr\_eu-west-1) | ./modules/baseline_ecr | n/a |
46+
| <a name="module_baseline_ecr_us-east-1"></a> [baseline\_ecr\_us-east-1](#module\_baseline\_ecr\_us-east-1) | ./modules/baseline_ecr | n/a |
47+
| <a name="module_baseline_ecr_us-east-2"></a> [baseline\_ecr\_us-east-2](#module\_baseline\_ecr\_us-east-2) | ./modules/baseline_ecr | n/a |
48+
| <a name="module_baseline_iam"></a> [baseline\_iam](#module\_baseline\_iam) | ./modules/baseline_iam | n/a |
49+
| <a name="module_baseline_s3"></a> [baseline\_s3](#module\_baseline\_s3) | ./modules/baseline_s3 | n/a |
50+
| <a name="module_firewall_manager_us-east-1"></a> [firewall\_manager\_us-east-1](#module\_firewall\_manager\_us-east-1) | ./modules/firewall_manager | n/a |
51+
| <a name="module_guardduty-eu-west-1"></a> [guardduty-eu-west-1](#module\_guardduty-eu-west-1) | ./modules/guardduty | n/a |
52+
| <a name="module_guardduty-us-east-1"></a> [guardduty-us-east-1](#module\_guardduty-us-east-1) | ./modules/guardduty | n/a |
53+
| <a name="module_guardduty-us-east-2"></a> [guardduty-us-east-2](#module\_guardduty-us-east-2) | ./modules/guardduty | n/a |
54+
| <a name="module_iam_access_analyzer-eu-west-1"></a> [iam\_access\_analyzer-eu-west-1](#module\_iam\_access\_analyzer-eu-west-1) | ./modules/iam_access_analyzer | n/a |
55+
| <a name="module_iam_access_analyzer-us-east-1"></a> [iam\_access\_analyzer-us-east-1](#module\_iam\_access\_analyzer-us-east-1) | ./modules/iam_access_analyzer | n/a |
56+
| <a name="module_iam_access_analyzer-us-east-2"></a> [iam\_access\_analyzer-us-east-2](#module\_iam\_access\_analyzer-us-east-2) | ./modules/iam_access_analyzer | n/a |
57+
| <a name="module_s3_bucket-us-east-1"></a> [s3\_bucket-us-east-1](#module\_s3\_bucket-us-east-1) | ./modules/s3_bucket | n/a |
58+
| <a name="module_securityhub_eu-west-1"></a> [securityhub\_eu-west-1](#module\_securityhub\_eu-west-1) | ./modules/securityhub | n/a |
59+
| <a name="module_securityhub_us-east-1"></a> [securityhub\_us-east-1](#module\_securityhub\_us-east-1) | ./modules/securityhub | n/a |
60+
| <a name="module_securityhub_us-east-2"></a> [securityhub\_us-east-2](#module\_securityhub\_us-east-2) | ./modules/securityhub | n/a |
6161

6262
## Resources
6363

@@ -70,43 +70,43 @@ This module is composed of several submodules and each of which can be used inde
7070

7171
| Name | Description | Type | Default | Required |
7272
|------|-------------|------|---------|:--------:|
73-
| account\_type | AWS account type (master, administrator, member) | `string` | n/a | yes |
74-
| aws\_profile | AWS credential profile | `string` | n/a | yes |
75-
| aws\_region | The AWS region in which global resources are set up. | `string` | `"us-east-1"` | no |
76-
| bucket\_custom\_policy\_json | Custom S3 bucket policy override JSON | `string` | `""` | no |
77-
| cloudtrail\_s3\_key\_prefix | S3 key prefix for CloudTrail | `string` | `"cloudtrail"` | no |
78-
| config\_s3\_bucket\_key\_prefix | S3 key prefix for Config | `string` | `"config"` | no |
79-
| ecr\_scan\_type | ECR scanning type (BASIC or ENHANCED) | `string` | `"BASIC"` | no |
80-
| ecr\_scanning\_rules | List of ECR scanning rules | `list(map(string))` | ```[ { "filter": "*", "frequency": "SCAN_ON_PUSH" } ]``` | no |
81-
| enable\_cloudtrail | Enable AWS CloudTrail service | `bool` | `true` | no |
82-
| enable\_config | Enable AWS Config service | `bool` | `true` | no |
83-
| enable\_ebs\_baseline | Boolean whether iam-baseline is enabled. | `bool` | `true` | no |
84-
| enable\_ecr\_baseline | Enable ECR image scanning | `bool` | `true` | no |
85-
| enable\_firewall\_manager | Enable AWS Firewall Manager service | `bool` | `true` | no |
86-
| enable\_guardduty | Enable AWS GuardDuty service | `bool` | `true` | no |
87-
| enable\_iam\_access\_analyzer | Enable AWS IAM Access Analyzer | `bool` | `true` | no |
88-
| enable\_iam\_baseline | Boolean whether iam-baseline is enabled. | `bool` | `true` | no |
89-
| enable\_s3\_baseline | Enable S3 baseline? | `bool` | `true` | no |
90-
| enable\_s3\_buckets | Enable S3 buckets? | `bool` | `false` | no |
91-
| enable\_securityhub | Enable AWS Security Hub service | `bool` | `true` | no |
92-
| force\_destroy | Allow destroy of S3 bucket with objects | `bool` | `false` | no |
93-
| iam\_allow\_users\_to\_change\_password | Whether to allow users to change their own password. | `bool` | `true` | no |
94-
| iam\_create\_password\_policy | Define if the password policy should be created. | `bool` | `true` | no |
95-
| iam\_max\_password\_age | The number of days that an user password is valid. | `number` | `0` | no |
96-
| iam\_minimum\_password\_length | Minimum length to require for user passwords. | `number` | `14` | no |
97-
| iam\_password\_reuse\_prevention | The number of previous passwords that users are prevented from reusing. | `number` | `24` | no |
98-
| iam\_require\_lowercase\_characters | Whether to require lowercase characters for user passwords. | `bool` | `true` | no |
99-
| iam\_require\_numbers | Whether to require numbers for user passwords. | `bool` | `true` | no |
100-
| iam\_require\_symbols | Whether to require symbols for user passwords. | `bool` | `true` | no |
101-
| iam\_require\_uppercase\_characters | Whether to require uppercase characters for user passwords. | `bool` | `true` | no |
102-
| s3\_block\_public\_acls | Whether Amazon S3 should block public ACLs for buckets in this account. Defaults to true. | `bool` | `true` | no |
103-
| s3\_block\_public\_policy | Whether Amazon S3 should block public bucket policies for buckets in this account. Defaults to true. | `bool` | `true` | no |
104-
| s3\_ignore\_public\_acls | Whether Amazon S3 should ignore public ACLs for buckets in this account. Defaults to true. | `bool` | `true` | no |
105-
| s3\_restrict\_public\_buckets | Whether Amazon S3 should restrict public bucket policies for buckets in this account. Defaults to true. | `bool` | `true` | no |
106-
| security\_administrator\_account\_id | AWS Security Administrator Account ID | `number` | n/a | yes |
107-
| tags | Specifies object tags key and value. This applies to all resources created by this module. | `map` | ```{ "Environment": "infra", "Product": "security", "Team": "devops", "Terraform": true }``` | no |
108-
| target\_regions | A list of regions to set up with this module. | `list` | ```[ "eu-west-1", "us-east-1", "us-east-2" ]``` | no |
109-
| vpc\_flow\_logs\_s3\_key\_prefix | S3 key prefix for VPC Flow Logs | `string` | `"flow-logs"` | no |
73+
| <a name="input_account_type"></a> [account\_type](#input\_account\_type) | AWS account type (master, administrator, member) | `string` | n/a | yes |
74+
| <a name="input_aws_profile"></a> [aws\_profile](#input\_aws\_profile) | AWS credential profile | `string` | n/a | yes |
75+
| <a name="input_aws_region"></a> [aws\_region](#input\_aws\_region) | The AWS region in which global resources are set up. | `string` | `"us-east-1"` | no |
76+
| <a name="input_bucket_custom_policy_json"></a> [bucket\_custom\_policy\_json](#input\_bucket\_custom\_policy\_json) | Custom S3 bucket policy override JSON | `string` | `""` | no |
77+
| <a name="input_cloudtrail_s3_key_prefix"></a> [cloudtrail\_s3\_key\_prefix](#input\_cloudtrail\_s3\_key\_prefix) | S3 key prefix for CloudTrail | `string` | `"cloudtrail"` | no |
78+
| <a name="input_config_s3_bucket_key_prefix"></a> [config\_s3\_bucket\_key\_prefix](#input\_config\_s3\_bucket\_key\_prefix) | S3 key prefix for Config | `string` | `"config"` | no |
79+
| <a name="input_ecr_scan_type"></a> [ecr\_scan\_type](#input\_ecr\_scan\_type) | ECR scanning type (BASIC or ENHANCED) | `string` | `"BASIC"` | no |
80+
| <a name="input_ecr_scanning_rules"></a> [ecr\_scanning\_rules](#input\_ecr\_scanning\_rules) | List of ECR scanning rules | `list(map(string))` | <pre>[<br> {<br> "filter": "*",<br> "frequency": "SCAN_ON_PUSH"<br> }<br>]</pre> | no |
81+
| <a name="input_enable_cloudtrail"></a> [enable\_cloudtrail](#input\_enable\_cloudtrail) | Enable AWS CloudTrail service | `bool` | `true` | no |
82+
| <a name="input_enable_config"></a> [enable\_config](#input\_enable\_config) | Enable AWS Config service | `bool` | `true` | no |
83+
| <a name="input_enable_ebs_baseline"></a> [enable\_ebs\_baseline](#input\_enable\_ebs\_baseline) | Boolean whether iam-baseline is enabled. | `bool` | `true` | no |
84+
| <a name="input_enable_ecr_baseline"></a> [enable\_ecr\_baseline](#input\_enable\_ecr\_baseline) | Enable ECR image scanning | `bool` | `true` | no |
85+
| <a name="input_enable_firewall_manager"></a> [enable\_firewall\_manager](#input\_enable\_firewall\_manager) | Enable AWS Firewall Manager service | `bool` | `true` | no |
86+
| <a name="input_enable_guardduty"></a> [enable\_guardduty](#input\_enable\_guardduty) | Enable AWS GuardDuty service | `bool` | `true` | no |
87+
| <a name="input_enable_iam_access_analyzer"></a> [enable\_iam\_access\_analyzer](#input\_enable\_iam\_access\_analyzer) | Enable AWS IAM Access Analyzer | `bool` | `true` | no |
88+
| <a name="input_enable_iam_baseline"></a> [enable\_iam\_baseline](#input\_enable\_iam\_baseline) | Boolean whether iam-baseline is enabled. | `bool` | `true` | no |
89+
| <a name="input_enable_s3_baseline"></a> [enable\_s3\_baseline](#input\_enable\_s3\_baseline) | Enable S3 baseline? | `bool` | `true` | no |
90+
| <a name="input_enable_s3_buckets"></a> [enable\_s3\_buckets](#input\_enable\_s3\_buckets) | Enable S3 buckets? | `bool` | `false` | no |
91+
| <a name="input_enable_securityhub"></a> [enable\_securityhub](#input\_enable\_securityhub) | Enable AWS Security Hub service | `bool` | `true` | no |
92+
| <a name="input_force_destroy"></a> [force\_destroy](#input\_force\_destroy) | Allow destroy of S3 bucket with objects | `bool` | `false` | no |
93+
| <a name="input_iam_allow_users_to_change_password"></a> [iam\_allow\_users\_to\_change\_password](#input\_iam\_allow\_users\_to\_change\_password) | Whether to allow users to change their own password. | `bool` | `true` | no |
94+
| <a name="input_iam_create_password_policy"></a> [iam\_create\_password\_policy](#input\_iam\_create\_password\_policy) | Define if the password policy should be created. | `bool` | `true` | no |
95+
| <a name="input_iam_max_password_age"></a> [iam\_max\_password\_age](#input\_iam\_max\_password\_age) | The number of days that an user password is valid. | `number` | `0` | no |
96+
| <a name="input_iam_minimum_password_length"></a> [iam\_minimum\_password\_length](#input\_iam\_minimum\_password\_length) | Minimum length to require for user passwords. | `number` | `14` | no |
97+
| <a name="input_iam_password_reuse_prevention"></a> [iam\_password\_reuse\_prevention](#input\_iam\_password\_reuse\_prevention) | The number of previous passwords that users are prevented from reusing. | `number` | `24` | no |
98+
| <a name="input_iam_require_lowercase_characters"></a> [iam\_require\_lowercase\_characters](#input\_iam\_require\_lowercase\_characters) | Whether to require lowercase characters for user passwords. | `bool` | `true` | no |
99+
| <a name="input_iam_require_numbers"></a> [iam\_require\_numbers](#input\_iam\_require\_numbers) | Whether to require numbers for user passwords. | `bool` | `true` | no |
100+
| <a name="input_iam_require_symbols"></a> [iam\_require\_symbols](#input\_iam\_require\_symbols) | Whether to require symbols for user passwords. | `bool` | `true` | no |
101+
| <a name="input_iam_require_uppercase_characters"></a> [iam\_require\_uppercase\_characters](#input\_iam\_require\_uppercase\_characters) | Whether to require uppercase characters for user passwords. | `bool` | `true` | no |
102+
| <a name="input_s3_block_public_acls"></a> [s3\_block\_public\_acls](#input\_s3\_block\_public\_acls) | Whether Amazon S3 should block public ACLs for buckets in this account. Defaults to true. | `bool` | `true` | no |
103+
| <a name="input_s3_block_public_policy"></a> [s3\_block\_public\_policy](#input\_s3\_block\_public\_policy) | Whether Amazon S3 should block public bucket policies for buckets in this account. Defaults to true. | `bool` | `true` | no |
104+
| <a name="input_s3_ignore_public_acls"></a> [s3\_ignore\_public\_acls](#input\_s3\_ignore\_public\_acls) | Whether Amazon S3 should ignore public ACLs for buckets in this account. Defaults to true. | `bool` | `true` | no |
105+
| <a name="input_s3_restrict_public_buckets"></a> [s3\_restrict\_public\_buckets](#input\_s3\_restrict\_public\_buckets) | Whether Amazon S3 should restrict public bucket policies for buckets in this account. Defaults to true. | `bool` | `true` | no |
106+
| <a name="input_security_administrator_account_id"></a> [security\_administrator\_account\_id](#input\_security\_administrator\_account\_id) | AWS Security Administrator Account ID | `number` | n/a | yes |
107+
| <a name="input_tags"></a> [tags](#input\_tags) | Specifies object tags key and value. This applies to all resources created by this module. | `map` | <pre>{<br> "Environment": "infra",<br> "Product": "security",<br> "Team": "devops",<br> "Terraform": true<br>}</pre> | no |
108+
| <a name="input_target_regions"></a> [target\_regions](#input\_target\_regions) | A list of regions to set up with this module. | `list` | <pre>[<br> "eu-west-1",<br> "us-east-1",<br> "us-east-2"<br>]</pre> | no |
109+
| <a name="input_vpc_flow_logs_s3_key_prefix"></a> [vpc\_flow\_logs\_s3\_key\_prefix](#input\_vpc\_flow\_logs\_s3\_key\_prefix) | S3 key prefix for VPC Flow Logs | `string` | `"flow-logs"` | no |
110110

111111
## Outputs
112112

0 commit comments

Comments
 (0)