Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Winter '22 Release

NEW FEATURES

OS Services CIS Scans

elaborate

Java Discovery Fact To Apache Log4j

Log4Shell is a high severity vulnerability (CVE-2021-44228, CVSSv3 10.0) impacting multiple versions of the Apache Log4j 2 utility. The vulnerability allows for unauthenticated remote code execution. Currently, the scanning tools are able to detect a limited scope of Log4j vulnerabilities, only relevant to Apache HTTP server. Cloudaware has released a custom fact that enables Java discovery to identify vulnerable log4j jar* files. Scanning is performed on demand as part of a paid subscription to Cloudaware Vulnerability Scanning. Please note that Breeze is to be installed to enable this type of scans.

UPDATED FEATURES

Cloudaware Virtual Applications

The following objects are available for attachment to Cloudaware Virtual Applications:

  • AWS EFS File System

  • AWS EKS Cluster

  • AWS EKS Cluster Pod

  • AWS EMR Cluster

  • AWS Kinesis Firehose Destination

  • AWS Kinesis Stream

  • AWS KMS Key

  • AWS MQ Broker

  • AWS RDS Cluster

  • AWS Secrets Manager Secret

  • AWS SQS Queue

  • Azure SQL Instance

  • Azure SQL Instance Database

NEW SERVICES

Azure Data Factory

Azure Analysis Services

Azure Monitor Metrics

UPDATED SERVICES

AWS MSK

The object AWS MSK Configuration Revision is added, with a lookup to objects AWS MSK Cluster, AWS MSK Configuration, AWS MSK Node. This object stores details related to AWS MSK configuration revision and helps to capture the actual cluster configuration.

...

AWS Сost Explorer Coverage & Utilization 
Cloudaware supports record types for ElastiCache, Elasticsearch, Redshift allowing to track costs for these services.

NEW INTEGRATIONS

Rancher