turbot/steampipe-mod-alicloud-compliance

Control: 8.5 Ensure that notification is enabled on all high risk items

Description

Enable all risk item notification in Vulnerability, Baseline Risks, Alerts and Accesskey Leak event detection categories.

Remediation

From Console:

  1. Logon to Security Center Console.
  2. Select Settings.
  3. Click Notification.
  4. Enable all high-risk items on Notification setting.

Usage

Run the control in your terminal:

powerpipe control run alicloud_compliance.control.cis_v100_8_5

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run alicloud_compliance.control.cis_v100_8_5 --share

SQL

This control uses a named query:

select
'arn:acs:::' || account_id as resource,
'info' as status,
'Manual verification required.' as reason
, account_id as account_id
from
alicloud_account;

Tags