-
Notifications
You must be signed in to change notification settings - Fork 5
Open
Labels
featNew featureNew feature
Description
Feature Request
Describe the Feature Request
We should ensure the modules provided are compliant, and will not result in new vulnerabilities being detected in the Lacework platform. As it stands, this module does not create VPC Flow Logs, so by deploying this module, the security scores are being decreased.
This fails the "CIS Amazon Web Services Foundations Benchmark v1.4.0" CIS 3.9 policy since it does not create any flow logs.
Describe Preferred Solution
Enable the option to create VPC Flow Logs to an S3 bucket or CloudWatch log group.
This should be disabled by default, until the next "breaking" release.
Metadata
Metadata
Assignees
Labels
featNew featureNew feature