Skip to content

Commit 5e5ff65

Browse files
authored
Merge pull request #33 from opengovern/fix-framework-structure
fix: remove defaults from control-groups
2 parents f476299 + 2eeb9b3 commit 5e5ff65

File tree

1,953 files changed

+867
-8753
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

1,953 files changed

+867
-8753
lines changed

compliance/frameworks/aws/aws_acsc_essential_eight/aws_acsc_essential_eight_ml_1.yaml

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,6 @@ control-group:
33
title: ACSC Essential Eight Maturity Level 1
44
description: The availability category refers to the accessibility of information used by the entity’s systems, as well as the products or services provided to its customers.
55
section-code: ml_1
6-
defaults:
7-
auto-assign: null
8-
enabled: false
9-
tracks-drift-events: false
106
control-group:
117
- id: aws_acsc_essential_eight_ml_1_2
128
- id: aws_acsc_essential_eight_ml_1_5

compliance/frameworks/aws/aws_acsc_essential_eight/aws_acsc_essential_eight_ml_1_2.yaml

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,9 +3,5 @@ control-group:
33
title: "ACSC-EE-ML1-2: Patch applications ML1"
44
description: A vulnerability scanner with an up-to-date vulnerability database is used for vulnerability scanning activities.
55
section-code: "2"
6-
defaults:
7-
auto-assign: null
8-
enabled: false
9-
tracks-drift-events: false
106
control-group:
117
- id: aws_acsc_essential_eight_ml_1_2_5

compliance/frameworks/aws/aws_acsc_essential_eight/aws_acsc_essential_eight_ml_1_2_5.yaml

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,6 @@ control-group:
33
title: "ACSC-EE-ML1-2.5: Patch applications ML1"
44
description: Patches, updates or vendor mitigations for security vulnerabilities in internet-facing services are applied within two weeks of release, or within 48 hours if an exploit exists.
55
section-code: "5"
6-
defaults:
7-
auto-assign: null
8-
enabled: false
9-
tracks-drift-events: false
106
controls:
117
- aws_ecs_service_fargate_using_latest_platform_version
128
- aws_eks_cluster_with_latest_kubernetes_version

compliance/frameworks/aws/aws_acsc_essential_eight/aws_acsc_essential_eight_ml_1_5.yaml

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,6 @@ control-group:
33
title: "ACSC-EE-ML1-5: Restrict administrative privileges ML1"
44
description: The restriction of administrative privileges is the practice of limiting the number of privileged accounts and the extent of their access to systems and data.
55
section-code: "5"
6-
defaults:
7-
auto-assign: null
8-
enabled: false
9-
tracks-drift-events: false
106
control-group:
117
- id: aws_acsc_essential_eight_ml_1_5_2
128
- id: aws_acsc_essential_eight_ml_1_5_3

compliance/frameworks/aws/aws_acsc_essential_eight/aws_acsc_essential_eight_ml_1_5_2.yaml

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,6 @@ control-group:
33
title: "ACSC-EE-ML1-5.2: Restrict administrative privileges ML1"
44
description: Privileged accounts (excluding privileged service accounts) are prevented from accessing the internet, email and web services.
55
section-code: "2"
6-
defaults:
7-
auto-assign: null
8-
enabled: false
9-
tracks-drift-events: false
106
controls:
117
- aws_codebuild_project_environment_privileged_mode_disabled
128
- aws_ecs_task_definition_container_non_privileged

compliance/frameworks/aws/aws_acsc_essential_eight/aws_acsc_essential_eight_ml_1_5_3.yaml

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,6 @@ control-group:
33
title: "ACSC-EE-ML1-5.3: Restrict administrative privileges ML1"
44
description: Privileged users use separate privileged and unprivileged operating environments.
55
section-code: "3"
6-
defaults:
7-
auto-assign: null
8-
enabled: false
9-
tracks-drift-events: false
106
controls:
117
- aws_codebuild_project_environment_privileged_mode_disabled
128
- aws_codebuild_project_source_repo_oauth_configured

compliance/frameworks/aws/aws_acsc_essential_eight/aws_acsc_essential_eight_ml_1_5_4.yaml

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,6 @@ control-group:
33
title: "ACSC-EE-ML1-5.4: Restrict administrative privileges ML1"
44
description: Unprivileged accounts cannot logon to privileged operating environments.
55
section-code: "4"
6-
defaults:
7-
auto-assign: null
8-
enabled: false
9-
tracks-drift-events: false
106
controls:
117
- aws_codebuild_project_source_repo_oauth_configured
128
- aws_ec2_instance_iam_profile_attached

compliance/frameworks/aws/aws_acsc_essential_eight/aws_acsc_essential_eight_ml_1_5_5.yaml

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,6 @@ control-group:
33
title: "ACSC-EE-ML1-5.5: Restrict administrative privileges ML1"
44
description: Privileged accounts (excluding local administrator accounts) cannot logon to unprivileged operating environments.
55
section-code: "5"
6-
defaults:
7-
auto-assign: null
8-
enabled: false
9-
tracks-drift-events: false
106
controls:
117
- aws_codebuild_project_environment_privileged_mode_disabled
128
- aws_codebuild_project_source_repo_oauth_configured

compliance/frameworks/aws/aws_acsc_essential_eight/aws_acsc_essential_eight_ml_1_6.yaml

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,6 @@ control-group:
33
title: "ACSC-EE-ML1-6: Patch operating systems ML1"
44
description: The patching of operating systems is the practice of applying patches, updates or vendor mitigations to security vulnerabilities in operating systems.
55
section-code: "6"
6-
defaults:
7-
auto-assign: null
8-
enabled: false
9-
tracks-drift-events: false
106
control-group:
117
- id: aws_acsc_essential_eight_ml_1_6_2
128
- id: aws_acsc_essential_eight_ml_1_6_3

compliance/frameworks/aws/aws_acsc_essential_eight/aws_acsc_essential_eight_ml_1_6_2.yaml

Lines changed: 0 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -3,10 +3,6 @@ control-group:
33
title: "ACSC-EE-ML1-6.2: Patch operating systems ML1"
44
description: A vulnerability scanner with an up-to-date vulnerability database is used for vulnerability scanning activities.
55
section-code: "2"
6-
defaults:
7-
auto-assign: null
8-
enabled: false
9-
tracks-drift-events: false
106
controls:
117
- aws_1test
128
- aws_ecr_repository_image_scan_on_push_enabled

0 commit comments

Comments
 (0)