CloudCustodian Rules engine for cloud security and governance, DSL in yaml for policies to query, filter, and take actions on resources
-
Updated
Aug 25, 2023
CloudCustodian Rules engine for cloud security and governance, DSL in yaml for policies to query, filter, and take actions on resources
A collection of terraform modules that allow you to deploy and manage cloud-custodian lambda resources using native terraform as opposed to using the cloud-custodian CLI
Playground for testing c7n-mailer templates.
Safe Policy Rollouts with GitOps (Kubecon NA 2021)
Base AWS lambda layer for running cloud custodian in a serverless manner
325 Cloud Custodian policies for AWS, each citing the compliance control it covers (FSBP, PCI DSS 4.0, CIS, SOX ITGC). Coverage is measured, not claimed: 229 of 369 FSBP controls, and every policy is tested offline with no AWS credentials.
Terraform to create the resources needed for running Cloud Custodian in AWS
Python toolkit for Cloud Custodian: measure how much of a compliance framework your policies cover, test policy filters offline with no AWS credentials, and classify what a run could not evaluate. Six modules, each usable on its own without adopting the rest.
Add a description, image, and links to the c7n topic page so that developers can more easily learn about it.
To associate your repository with the c7n topic, visit your repo's landing page and select "manage topics."