Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

aws.elasticsearch - Add cross-account filter and remove-statements actions #6304

Closed
jtroberts83 opened this issue Nov 20, 2020 · 1 comment
Closed

Comments

@jtroberts83
Copy link
Contributor

Is your feature request related to a problem? Please describe.
As a cloud security engineer I would like to be able to run a c7n policy which checks my elasticsearch domains resource policy for cross-account permissions and remediates any overly permissive cross-account permissions via a remove-statements action. (See SNS cross-account filter and remove-statements action for example)

Describe the solution you'd like
A very similar filter and action to SNS cross-account filter and remove-statements actions

Describe alternatives you've considered
No other solutions I can think of to achieve this currently without going outside of c7n

Additional context
Thank you

@kapilt
Copy link
Collaborator

kapilt commented Dec 3, 2020

closed in #6225

@kapilt kapilt closed this as completed Dec 3, 2020
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants