Releases: erickmoore/pcpolicy
Release list
v0.4.0
0.4.0 (2024-12-01)
New command line switch --matchall allows for more narrow searches.
This command without --matchall finds all policies with gke or network anywhere in the name returning ~80 results.
pcpolicy --cloud gcp --include gke --include networkThe same command with --matchall finds all policies with gke and network in the name returning ~3 results.
pcpolicy --cloud gcp --include GKE --include network --matchallFeatures
- --apply now automatically creates a before_apply and after_apply timestamped csv
- Added: --matchall that combines search filters for more narrow matching
Refactor
- Merged commit: 8721823
v0.3.1
v0.3.0
v0.2.0
v0.1.1
0.1.0
What's Changed
This release marks the ability to both search for labels on policies as well as add new labels to matching policies. The following command would prompt for adding the label API to all AWS critical severity policies that have an existing label of "Attack Path Rule".
pcpolicy --cloud aws --severity c --policy-label "Attack Path Rule" --new-label "API"As with the existing tooling to apply the change you need to add --apply to the end of the command.
pcpolicy --cloud aws --severity c --policy-label "Attack Path Rule" --new-label "API" --applyAll Changes
- Erick-release-0.1.0 by @erickmoore in #3
Features
-
Adding policy label support in API query 7c74448
-
Adding Policy Label header to csv export a580b55
-
Adding message support for policy_label c0c42b8
-
Added ability to add policy label to existing policies 88268bf
Bug Fixes
- Fixed crash when dataframe was missing columns 9e5f0b3
0.0.6
New Features:
This release adds the ability to match policies against a named compliance standard, automatically creates a pre/post CSV with the modified policies, and a stand-alone export that can be used to save matched output.
New Commands:
--list-compliance
--compliance
--export
List all compliance standards that include the word 'PCI'
pcpolicy --list-compliance --include PCIList all disabled policies for the 'PCI DSS v4.0' compliance standard
pcpolicy --compliance 'PCI DSS v4.0' --policy-disabledExport matched results for disabled HIPAA policies to a time-stamped CSV
pcpolicy --compliance 'HIPAA' --policy-disabled --export