Difference between revisions of "Datadog Cloud Security Management (CSM)"

From wikieduonline
Jump to navigation Jump to search
(13 intermediate revisions by the same user not shown)
Line 7: Line 7:
 
* Identity [[risk assessments]]
 
* Identity [[risk assessments]]
  
 +
Activation require <code>[[SecurityAudit]]</code> managed policy in <code>[[DatadogAWSIntegrationRole]]</code>.
  
 
== Features ==
 
== Features ==
* [[Resource Inventory]] (by default), require <code>[[SecurityAudit]]</code> managed policy in <code>[[DatadogAWSIntegrationRole]]</code>
+
* [[Resource Inventory]] (by default), require <code>[[SecurityAudit]]</code> managed policy in <code>[[DatadogAWSIntegrationRole]]</code>
 
* Case Management (by default)
 
* Case Management (by default)
 
* [[Identify Risk]]
 
* [[Identify Risk]]
Line 16: Line 17:
 
* Host Vulnerability Management
 
* Host Vulnerability Management
 
* Container Vulnerability Management
 
* Container Vulnerability Management
 +
 +
== Alerts ==
 +
* [[Datadog: EC2 subnets should not automatically assign public IP addresses]]
 +
* <code>[[Application Load Balancers should be configured to drop HTTP headers]]</code>: <code>[[drop_invalid_header_fields]]</code>
 +
* [[Datadog: Amazon EC2 instances should not have a public IPv4 address]]
 +
* [[Datadog: Amazon ECR should be scanning all images for vulnerabilities]]
 +
* [[Datadog: EC2 instances should enforce IMDSv2]]
 +
* [[Datadog: RDS database instances should use a non-default port]]
  
 
== Related ==
 
== Related ==
Line 21: Line 30:
 
* <code>[[datadog_security_monitoring_rule]]</code>
 
* <code>[[datadog_security_monitoring_rule]]</code>
 
* <code>[[datadog_cloud_workload_security_agent_rule]]</code>
 
* <code>[[datadog_cloud_workload_security_agent_rule]]</code>
 +
* [[CloudTrail logs]]
 +
* [[Datadog: EC2 subnets should not automatically assign public IP addresses]]
  
 
== See also ==
 
== See also ==
 
* {{tf dd}}
 
* {{tf dd}}
 
* {{DD CSM}}
 
* {{DD CSM}}
* {{Datadog}}
+
* {{Datadog security}}
  
 
[[Category:Datadog]]
 
[[Category:Datadog]]

Revision as of 15:09, 28 June 2024

Activation require SecurityAudit managed policy in DatadogAWSIntegrationRole.

Features

Alerts

Related

See also

Advertising: