Cloud misconfiguration detection- Runtime vs Static analysis

DevSecCon
DevSecCon
272 بار بازدید - 4 سال پیش - Planning, provisioning, and changing infrastructure
Planning, provisioning, and changing infrastructure are becoming vital to rapid cloud application development. Incorporating infrastructure-as-code into software development promotes transparency and immutability and helps prevent bad configurations upstream.In this session, we cover a simple method to write, test, and maintain infrastructure at scale using policy-as-code both in build and runtime. We will go over open source projects that analyze Terraform code and AWS accounts and compare the two approaches (detection vs static analysis) using the following projects:

https://github.com/toniblyx/prowler

https://github.com/bridgecrewio/checkov
4 سال پیش در تاریخ 1399/01/14 منتشر شده است.
272 بـار بازدید شده
... بیشتر