wayfair-archive / terrafirma
A static analysis tool for Terraform plans.
☆45Updated 2 years ago
Alternatives and similar repositories for terrafirma:
Users that are interested in terrafirma are comparing it to the libraries listed below
- Terraform InSpec Provisioner Plugin☆68Updated 6 years ago
- Enhance the security of the EC2 metadata service. (Obsolete thanks to Instance Metadata Service Version 2, see note in README)☆31Updated 5 years ago
- InSpec CLI plugin for generating compliance controls from Terraform and CloudFormation☆105Updated 3 years ago
- InSpec profile to validate your VPC to the standards of the CIS Amazon Web Services Foundations Benchmark☆78Updated 2 months ago
- Validate all your Customer IAM Policies against AWS Access Analyzer - Policy Validation☆43Updated 3 years ago
- ☆80Updated 3 years ago
- A unified IAM+Kubernetes RBAC access control exploration tool☆77Updated 5 years ago
- Manheim's Cloud Custodian (c7n) wrapper package, policy generator, runner, and supporting tools.☆45Updated 2 weeks ago
- CLI for searching Rego policies☆105Updated 3 years ago
- Cloud multi-account metadata management tool.☆88Updated 4 years ago
- RSpec tests for your Terraform modules☆92Updated 9 years ago
- SSH-Restricted deploys an SSH compliance rule (AWS Config) with auto-remediation via AWS Lambda if SSH access is public.☆30Updated 3 years ago
- Terraform module to provision Service Control Policies (SCP) for AWS Organizations, Organizational Units, and AWS accounts☆50Updated last week
- This ansible role gets information from an AWS VPC and generate a graphical representation of security groups☆103Updated 4 years ago
- Automate the AWS GuardDuty account invitation lifecycle for all of your organizations AWS accounts in all regions as well as aggregate an…☆66Updated last year
- Terraform module for Policy Sentry.☆25Updated 4 years ago
- (WIP) A terraform / kitchen-terraform hardening baseline for the cis-aws-foundations-baseline☆24Updated 3 years ago
- CloudTrail and CloudWatch configuration with some basic security alarms.☆18Updated 7 years ago
- GitOps for Teams (experimental hard fork of atlantis)☆14Updated 5 years ago
- Darkbit Cloud Security Tools☆25Updated 4 years ago
- Summon provider for AWS Secrets Manager☆52Updated last year
- An example of using Sentinel policies in VCS in Terraform Enterprise☆26Updated last week
- "Ephemeral credentials with Vault and Terraform" demo for the Hashicorp User Group talk☆19Updated 4 years ago
- Execute Terraform on Kubernetes☆73Updated last year
- Marking instances dirty since 2018☆47Updated 5 years ago
- Example Code along with the blog post at https://blokje5/dev☆23Updated 5 years ago
- Example of how to run the Clair image scanner on AWS ECS Fargate☆27Updated 6 years ago
- GKE CIS 1.1.0 Benchmark InSpec Profile☆27Updated 3 years ago
- ☆53Updated 4 years ago
- Show the history and changes between configuration versions of AWS resources☆70Updated 5 years ago