forked from aws-ia/cfn-abi-crowdstrike-fcs
-
Notifications
You must be signed in to change notification settings - Fork 0
/
.taskcat.yml
111 lines (110 loc) · 4.4 KB
/
.taskcat.yml
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
project:
name: cfn-abi-crowdstrike-fcs
owner: [email protected] # to be updated
shorten_stack_name: true
s3_regional_buckets: false
regions:
- us-east-1
tests:
cw-test:
parameters:
FalconClientID: $[taskcat_ssm_/crowdstrike/falcon_client_id]
FalconSecret: $[taskcat_ssm_/crowdstrike/falcon_secret]
SourceS3BucketName: $[taskcat_autobucket]
S3BucketRegion: $[taskcat_current_region]
ProvisionOU: $[taskcat_ssm_/crowdstrike/provision-ou]
ExcludeRegions: $[taskcat_ssm_/crowdstrike/exclude_regions]
regions:
- us-east-1
template: templates/crowdstrike_init_stack.yaml
cw-eks-test:
parameters:
FalconClientID: $[taskcat_ssm_/crowdstrike/falcon_client_id]
FalconSecret: $[taskcat_ssm_/crowdstrike/falcon_secret]
DockerAPIToken: $[taskcat_ssm_/crowdstrike/falcon_docker_api_token]
FalconCID: $[taskcat_ssm_/crowdstrike/falcon_cod]
SourceS3BucketName: $[taskcat_autobucket]
S3BucketRegion: $[taskcat_current_region]
ProvisionOU: $[taskcat_ssm_/crowdstrike/provision-ou]
ExcludeRegions: $[taskcat_ssm_/crowdstrike/exclude_regions]
regions:
- us-east-1
template: templates/crowdstrike_init_stack.yaml
cw-test-trail:
parameters:
FalconClientID: $[taskcat_ssm_/crowdstrike/falcon_client_id]
FalconSecret: $[taskcat_ssm_/crowdstrike/falcon_secret]
SourceS3BucketName: $[taskcat_autobucket]
S3BucketRegion: $[taskcat_current_region]
ProvisionOU: $[taskcat_ssm_/crowdstrike/provision-ou]
CreateIOAOrgTrail: "true"
ExcludeRegions: $[taskcat_ssm_/crowdstrike/exclude_regions]
regions:
- us-east-1
template: templates/crowdstrike_init_stack.yaml
cw-test-ssm:
parameters:
FalconClientID: $[taskcat_ssm_/crowdstrike/falcon_client_id]
FalconSecret: $[taskcat_ssm_/crowdstrike/falcon_secret]
SourceS3BucketName: $[taskcat_autobucket]
S3BucketRegion: $[taskcat_current_region]
ProvisionOU: $[taskcat_ssm_/crowdstrike/provision-ou]
ExcludeRegions: $[taskcat_ssm_/crowdstrike/exclude_regions]
EnableSSMDistributor: "true"
regions:
- us-east-1
template: templates/crowdstrike_init_stack.yaml
cw-test-smlambda:
parameters:
FalconClientID: $[taskcat_ssm_/crowdstrike/falcon_client_id]
FalconSecret: $[taskcat_ssm_/crowdstrike/falcon_secret]
SourceS3BucketName: $[taskcat_autobucket]
S3BucketRegion: $[taskcat_current_region]
ProvisionOU: $[taskcat_ssm_/crowdstrike/provision-ou]
ExcludeRegions: $[taskcat_ssm_/crowdstrike/exclude_regions]
APICredentialsStorageMode: "lambda"
regions:
- us-east-1
template: templates/crowdstrike_init_stack.yaml
cw-test-all:
parameters:
FalconClientID: $[taskcat_ssm_/crowdstrike/falcon_client_id]
FalconSecret: $[taskcat_ssm_/crowdstrike/falcon_secret]
SourceS3BucketName: $[taskcat_autobucket]
S3BucketRegion: $[taskcat_current_region]
ProvisionOU: $[taskcat_ssm_/crowdstrike/provision-ou]
ExcludeRegions: $[taskcat_ssm_/crowdstrike/exclude_regions]
EnableSSMDistributor: "true"
CreateIOAOrgTrail: "true"
CreateSRAOrgTrail: "true"
regions:
- us-east-1
template: templates/crowdstrike_init_stack.yaml
cw-test-sra:
parameters:
FalconClientID: $[taskcat_ssm_/crowdstrike/falcon_client_id]
FalconSecret: $[taskcat_ssm_/crowdstrike/falcon_secret]
SourceS3BucketName: $[taskcat_autobucket]
S3BucketRegion: $[taskcat_current_region]
ProvisionOU: $[taskcat_ssm_/crowdstrike/provision-ou]
CreateSRAOrgTrail: "true"
ExcludeRegions: $[taskcat_ssm_/crowdstrike/exclude_regions]
regions:
- us-east-1
template: templates/crowdstrike_init_stack.yaml
cw-test-sra-nonct:
parameters:
FalconClientID: $[taskcat_ssm_/crowdstrike/falcon_client_id]
FalconSecret: $[taskcat_ssm_/crowdstrike/falcon_secret]
SourceS3BucketName: $[taskcat_autobucket]
S3BucketRegion: $[taskcat_current_region]
ProvisionOU: $[taskcat_ssm_/crowdstrike/provision-ou]
CreateSRAOrgTrail: "true"
ExcludeRegions: $[taskcat_ssm_/crowdstrike/exclude_regions]
pControlTower: 'false'
pLogArchiveAccountId: $[taskcat_ssm_/nonct/log-archive-account-id]
pSecurityAccountId: $[taskcat_ssm_/nonct/audit-account-id]
pGovernedRegions: 'us-east-1,us-east-2'
regions:
- us-east-1
template: templates/crowdstrike_init_stack.yaml