Skip to content

Commit f2a50fa

Browse files
Add source code integration instructions to security docs (#23985)
* Add source code integration instructions * Clean up instructions * Update content/en/security/cloud_security_management/setup/source_code_integrations.md Co-authored-by: Esther Kim <[email protected]> * Update content/en/security/cloud_security_management/setup/source_code_integrations.md Co-authored-by: Esther Kim <[email protected]> * Small wording change --------- Co-authored-by: Esther Kim <[email protected]>
1 parent 7d13711 commit f2a50fa

File tree

3 files changed

+33
-0
lines changed

3 files changed

+33
-0
lines changed

config/_default/menus/main.en.yaml

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -4789,6 +4789,11 @@ menu:
47894789
parent: csm_setup
47904790
identifier: csm_setup_cloudtrail_logs
47914791
weight: 106
4792+
- name: Source Code Integrations
4793+
url: security/cloud_security_management/setup/source_code_integrations
4794+
parent: csm_setup
4795+
identifier: csm_setup_source_code_integrations
4796+
weight: 106
47924797
- name: Threats
47934798
url: security/threats/
47944799
parent: csm

content/en/security/cloud_security_management/setup/_index.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -52,6 +52,7 @@ The following table shows which sections appear on the Setup page for each featu
5252
<li><a href="/security/cloud_security_management/setup/cloud_accounts">Cloud accounts</a></li>
5353
<li><a href="/security/cloud_security_management/setup/agent">Hosts and containers</a></li>
5454
<li><a href="/security/cloud_security_management/setup/cloud_accounts/?tab=aws#set-up-cloudtrail-logs-forwarding">CloudTrail logs</a></li>
55+
<li><a href="/security/cloud_security_management/setup/source_code_integrations">Source code integrations</a></li>
5556
</ul>
5657
</td>
5758
</tr>
Lines changed: 27 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,27 @@
1+
---
2+
title: Setting up Source Code Integrations for Cloud Security Management
3+
---
4+
5+
Use the following instructions to enable Infrastructure as Code (IaC) remediation for Cloud Security Management (CSM). IaC remediation is available for [CSM Misconfigurations][1] and [CSM Identity Risks][2].
6+
7+
## Set up the GitHub integration
8+
9+
Follow [the instructions][3] for creating a GitHub app for your organization.
10+
11+
<div class="alert alert-info">To use IaC remediation, you must give the Github App <code>Read & Write</code> permissions for <code>Contents</code> and <code>Pull Requests</code>. These permissions can be applied to all or select repositories.
12+
</div>
13+
14+
## Enable IaC remediation for your repositories
15+
16+
After you set up the GitHub integration, enable IaC remediation for the repositories in your GitHub account.
17+
18+
1. On the [CSM Setup page][4], expand the **Source Code Integrations** section.
19+
2. Click **Configure** for the GitHub account you want to configure.
20+
3. To enable IaC:
21+
- For all repositories, switch on the IAC toggle under Enable Infrastructure as Code (IaC).
22+
- For a single repository, switch on the IAC toggle for that repository.
23+
24+
[1]: /security/cloud_security_management/misconfigurations
25+
[2]: /security/cloud_security_management/identity_risks
26+
[3]: /integrations/github/#link-a-repository-in-your-organization-or-personal-account
27+
[4]: https://app.datadoghq.com/security/configuration/csm/setup

0 commit comments

Comments
 (0)