You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
| Deployment Type | all Sysdig resources will be deployed within the selected account | Most Sysdig resources will
24
-
be deployed within the selected account (just one), but some features, require resources to be deployed on all of
25
-
the member-accounts (for Compliance and Image Scanning) . <br />One role is needed on the management account for
26
-
cloudtrail-s3 event access |
23
+
| Deployment Type | all Sysdig resources will be deployed within the selected account | Most Sysdig resources will be deployed within the selected account (just one), but some features, require resources to be deployed on all of the member-accounts (for Compliance and Image Scanning) . <br />One role is needed on the management account for cloudtrail-s3 event access |
27
24
| Target | will only analyse current account | handles all accounts (managed and member)|
28
25
| Drawbacks | cannot re-use another account Cloudtrail data (unless its deployed on the same account where the sns/s3 bucket is) | for scanning, a per-member-account access role is required |
29
26
| Optional usage limitations | - | For organizational example, optional resources must exist in the management account. For other setups check
@@ -52,12 +49,7 @@ Make use of optionals to allow the re-use of pre-existing resources, and avoid i
52
49
53
50
| Cloud | Optionals | Related Input Vars | Other |
| For organizational example, optional resources must exist in the management account. For other setups check
60
-
other alternative use-cases |
52
+
| AWS | Cloudtrail | single: [`cloudtrail_sns_arn`](https://github.com/sysdiglabs/terraform-aws-secure-for-cloud/tree/master/examples/single-account-ecs#input_cloudtrail_sns_arn)<br/>organizational: [`existing_cloudtrail_config`](https://github.com/sysdiglabs/terraform-aws-secure-for-cloud/tree/master/examples/organizational#input_existing_cloudtrail_config)| For organizational example, optional resources must exist in the management account. For other setups check other alternative use-cases |
61
53
|| ECS, VPC, Subnet |`ecs_cluster_name`, `ecs_vpc_id`, `ecs_vpc_subnets_private_ids`| if used, the three are mandatory |
0 commit comments