You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Since AWS has added a million and one VPC endpoints and shoved them all into the NIST standard in Security Hub, it would be nice if we could actually, programatically in a controlled way (that is, using IaC) control which of those endpoints actually make sense for our workloads. No sane person will create all 100+ endpoints for every possible service in every VPC they have.
Currently DisabledStandardsControls only allows for 100 items in the list. NIST Special Publication 800-53 Revision 5 standard currently has almost 400 controls in it, making the limit of 100 items very low. This should be increased, so we can have an IaC way of controlling which of the controls we want to keep enabled.
Other Details
No response
The text was updated successfully, but these errors were encountered:
Name of the resource
AWS::SecurityHub::Standard
Resource name
No response
Description
Since AWS has added a million and one VPC endpoints and shoved them all into the NIST standard in Security Hub, it would be nice if we could actually, programatically in a controlled way (that is, using IaC) control which of those endpoints actually make sense for our workloads. No sane person will create all 100+ endpoints for every possible service in every VPC they have.
Currently
DisabledStandardsControls
only allows for 100 items in the list.NIST Special Publication 800-53 Revision 5
standard currently has almost 400 controls in it, making the limit of 100 items very low. This should be increased, so we can have an IaC way of controlling which of the controls we want to keep enabled.Other Details
No response
The text was updated successfully, but these errors were encountered: