Skip to content

@hshin-g hshin-g released this Feb 14, 2019 · 5 commits to release-2.11.0 since this release

Summary

Inventory

  • Fixed CAI import of CloudSQL data.
  • Fixed generation of storage bucket policy when CAI is enabled.
  • Switched the CloudAsset temporary table to store the asset data as JSON.

Scanner

  • Added Key Management Service (KMS) Scanner.
  • Added Resources Scanner.
  • Added user whitelist support for External Project Access Scanner.
  • Fixed Bucket ACL Scanner to use gcs_policy for bucket ACLs.
  • Extended capabilities of Retention Scanner to BigQuery.

Enforcer

  • Switched to using firewalls.patch for Firewall Enforcer.

Infrastructure

  • Starting from v2.11.0, users are now able to install Forseti using Terraform. More details can be found here.

Upgrade

  • Please refer to the upgrade instructions on our official website.

Thanks to our contributors!

All Changes

980e918 Switch the CloudAsset temporary table to store the asset data as json. (#2554)
8f48ed3 Fix generation of storage bucket policy when CAI is enabled. (#2555)
1678535 KMS Scanner Implementation (#2507)
f86c43e Change version number to 2.11.0.
4dc6d9c Fix bucket rules scanner to use gcs_policy for bucket ACLs. (#2542)
eff1199 Rolling back the session on sqlalchemyerror when deleting CAI data (#2496)
56057f6 Remove untested/unsupported flags (dry-run & advanced) (#2516)
c8ea2cc Fix CAI import of CloudSQL data. (#2536)
496f9d8 Switch to using firewalls.patch for firewall enforcer. (#2534)
0b90631 Initial commit to support the specification of users in External Project Access scanner rule. (#2527)
8a4fdf8 updated pyyaml to use a newer version. (#2532)
a912b60 Add default value for disabled attribute on firewall rules in enforcer. (#2533)
749bd61 Pin PIP packages to a specific version. (#2530)
9e9dffe Updated rules to include comment to clarify resource_ids. (#2517)
105915f Assign Project IAM roles immediately after creating server and client service accounts (#2497)
d9eb646 Fixes #2519. (#2521)
28bde0b add project location test (#2513)
bd1b196 Bigquery retention model and scanner part (#2396)
a7a3573 Take out references to storage.objectAdmin in installer. (#2501)
56832c8 (origin/v2.9.0) Merge Release 2.10.0 branch after re-tagging to dev (#2493)
e9d977f Merging release 2.10.0 branch to dev (#2490)
db77a94 Add resource scanner (#2435)

Assets 2
You can’t perform that action at this time.