Open marco-lancini opened 4 years ago
Supporting the GCP Container Analysis API would be a good option. This API is a frontend for hosted Grafeas. This data would be useful to correlate vulnerabilities to other assess like container images.
I've started on the Cloud SQL portion of this, I should have the PR ready within a week or so.
We have started working on Cloud Function, IAM, Cloud Run and Database related services. Will open PRs one after another in next few weeks.
We have started working on Cloud Function, IAM, Cloud Run and Database related services. Will open PRs one after another in next few weeks.
@mpurusottamc: Looking forward to it!
Has cartography considered using the cloud asset inventora IAM_policy export as a generic means for data ingestión? Fields are Instance name Asset type Ancestors -folders Bindings - iam privileges.
You could combine that with a CAI resources export to get details for each resource. AFAIK the resource.DATA field is the same as equivalent gcloud output + one type field.
Title: Extend list of GCP services supported by Cartography
Description: To increase overall adoption of Cartography by the community, we should extend support for GCP. A list of initial services that could be useful to have ingested are:
DNS entries--> #474