turbot/steampipe-mod-alicloud-compliance

Control: 8.5 Ensure that notification is enabled on all high risk items

Description

Enable all risk item notification in Vulnerability, Baseline Risks, Alerts and Accesskey Leak event detection categories.

Remediation

Using the management console:

  1. Logon to Security Center Console.
  2. Select Settings.
  3. Click Notification.
  4. Enable all high-risk items on Notification setting.

Default Value:

Not enabled.

Usage

Run the control in your terminal:

powerpipe control run alicloud_compliance.control.cis_v200_8_5

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run alicloud_compliance.control.cis_v200_8_5 --share

SQL

This control uses a named query:

select
'arn:acs:::' || account_id as resource,
'info' as status,
'Manual verification required.' as reason
, account_id as account_id
from
alicloud_account;

Tags