Turbot v5 Update Digest for 11 May to 18 May 2020

Turbot Enterprise

Highlights

  • Calculated policy modal now shows the test resource as a link, for convenient viewing of
    the available data.
  • SAML directory setup will now automatically turn on group synchronization (per policies).
    A new maintenance container has been added to perform general cleanup duties, such
    as cleaning and migration process logs into our new TED-based S3 buckets.
  • All process logs are now stored in TED-based S3 buckets with improved naming,
    lifecycle and encryption controls.
  • Support for Feature Flags, giving us more flexibility to innovate and gradually deploy
    features.

Warnings/Alerts

  • Starting in TED 1.7.0 the default for the TrackFunctions parameter was set to pl.
    (see https://www.postgresql.org/docs/9.1/runtime-config-statistics.html) This setting is for
    performance tuning of SQL queries. We have changed the default to none starting in
    TED 1.8.0. We recommend that you explicitly change this to none if you do not require
    that tracking.

Current Recommended Versions:

Foundation (TEF) v1.18.1 [Full release notes]

Database (TED) v1.8.0 [Full release notes]

Turbot (TE) v5.19.1 [Full release notes] (requires, tef>=1.18.1 & ted >=1.8.0)

Turbot Mods

AWS

Highlights

  • 30 AWS Mods updated!
  • Updated service availability mappings for AWS services across: af-south-1, eu-south-1, eu-north-1, ap-east-1, ap-northeast-2, cn-north-1 cn-northwest-1, us-gov-east-1, us-gov-west-1
  • Fixed documentation links in many mods.

New Capabilities

  • aws-rds mod: The AWS > RDS > DB snapshot DBSnapshotAttributes data has been made
    available in the DBSnapshotAttributesMap property. This new property stores the attribute data as a
    map, instead of a list of maps, for easier referencing.
  • aws-guardduty mod: The AWS > GuardDuty > Detector resource CMDB data now contains
    information on whether the account is a master or member account, along with details of its member
    accounts if it is a master account. Enabling calculated policies checking on correct configuration

Release Notes

Azure

Highlights

  • 16 Mods Updated!
  • Added default tagging templates at the resource group level, enabling propagation of tag templates across all services and resource types
  • Fixed issue across multiple services where permissions did not have grant levels assigned, preventing the IAM permission model from calculating the full permission set across all services.  The missing grant levels have been added and permission calculations are now running smoothly again.
  • Fixed documentation links in many mods.

New Capabilities

Release Notes

GCP 

Highlights

  • 21 Mods Updated!
  • Added support for asia-northeast2, asia-northeast3, europe-west6, us-west2, us-west3, us-west4 GCP regions.
  • Fixed issue across multiple services where permissions did not have grant levels.
  • Fixed documentation links in many mods.

Release Notes

Was this article helpful?
0 out of 0 found this helpful