Upgrade to Pro — share decks privately, control downloads, hide ads and more …

devio2022-sharr

 devio2022-sharr

Sugikane Shin

July 27, 2022
Tweet

Other Decks in Technology

Transcript

  1. ௨஌ઃఆ "NB[PO4/4ʣ  4/4τϐοΫ໊ɿ404)"33@5PQJD ௨஌ϝοηʔδྫ ɹɾ3FNFEJBUJPO queued for <standard> control

    <control_ID> 
 in account <account_ID> ɹɾ3FNFEJBUJPO failed for <standard> control <control_ID> 
 in account <account_ID> ɹɾ<control_ID> remediation was successfully invoke via AWS Systems Manager 
 in account <account_ID>
  2. ௨஌಺༰ͷྫʢϝʔϧʣ  { "severity": "INFO", "message": "22ca9bc8-0000-4c3e-8bf9-e6dba09a95ec: Remediation succeeded for

    AFSBP control EC2.2 in account 123456789012: See Automation Execution output for details (AwsEc2SecurityGroup sg-xxxxxxxx)”, " fi nding": { " fi nding_id": "19f9612c-0000-49ed-ab63-254e35a4b1aa", " fi nding_description": "This AWS control checks that the default security group of a VPC does not allow inbound or outbound traf fi c.", "standard_name": "aws-foundational-security-best-practices", "standard_version": "1.0.0", "standard_control": "EC2.2", "title": "EC2.2 The VPC default security group should not allow inbound and outbound traf fi c", "region": "ap-northeast-1", "account": “123456789012", " fi nding_arn": “arn:aws:securityhub:ap-northeast-1:123456789012:subscription/aws-foundational-security-best-practices/v/1.0.0/ EC2.2/ fi nding/19f9612c-0000-49ed-ab63-254e35a4b1aa" } }
  3. *".ϩʔϧ࡞੒ɿ*".ϩʔϧͷઃఆ  <ࢀߟ>৴པϙϦγʔͷ"TTVNF3PMFͷڐՄʹ 
 ɹɹɹҎԼͷϩʔϧηογϣϯϓϦϯγύϧΛ௥Ճ BSOBXTTUT"DDPVOU*%BTTVNFESPMF404)"330SDIFTUSBUPS "ENJO404)"33FYFD"VUPNBUJPO { "Effect": "Allow",

    "Principal": { "AWS": [ "arn:aws:iam::<AccountID>:role/SO0111-SHARR-Orchestrator-Member", "arn:aws:sts::<AccountID>:assumed-role/SO0111-SHARR-Orchestrator-Admin/SO0111-SHARR-execAutomation" ] }, "Action": "sts:AssumeRole" }