- add
audit_log_bucket_custom_policy_json
variable - create an SNS topic for notifications of CloudTrail log delivery
0.16.2 - 2019-11-16
- remove unused data source
0.16.1 - 2019-10-12
- do not read AWS Organization when account_type is set to "individual"
0.16.0 - 2019-09-28
- add an argument to specify target regions.
- add "tags" argument
- incorrect references in external-bucket example
0.15.0 - 2019-08-18
- allow member accounts access to the audit log bucket
- do not setup CloudTrail for member accounts
- add the organizational AWS Config aggregated view
- support organization trails
- support GuardDuty master/member accounts
- only include global resources in the specified region
- permissions for organization trail
- do not override guardduty_master_account_id for simplicity
- insufficient permission to accept organization trails.
- use aws_iam_policy_document instead of heredocs
0.14.0 - 2019-07-24
- allow using an external bucket instead of creating a new one
- add a flag to enable force_destroy on S3 buckets
0.13.0 - 2019-07-14
- take finding_publishing_frequency as an input variable
- enable GuardDuty in eu-north-1 region
0.12.0 - 2019-07-14
- return resources as outputs instead of specific attributes
0.11.0 - 2019-06-06
0.10.0 - 2019-05-25
- upgrade to terraform 0.12
0.9.0 - 2019-04-06
- enable SecurityHub and CIS standard subscription
- add eu-north-1 region support
0.8.0 - 2019-04-03
- add eu-north-1 region support
- remove a default subnet resource
0.7.0 - 2019-02-11
- create a log group for VPC Flow Logs in each region
0.6.0 - 2018-11-23
- enable managed config rules for benchmark compliance
0.5.0 - 2018-08-05
- enable GuardDuty in Paris region.
- Change how to workaround the default ACL issue.
0.4.1 - 2018-05-27
- create a global rule after recorders.
0.4.0 - 2018-05-27
- enable AWS Config rules for monitoring
0.3.0 - 2018-05-19
- automatically archive audit logs into Amazon Glacier
0.2.1 - 2018-04-01
- temporarily disable mfa_delete on secure buckets
0.2.0 - 2018-04-01
- enable versioning with secure buckets
0.1.1 - 2018-03-20
- omit GuardDuty config for eu-west-3 region until supported
0.1.0 - 2018-03-11
- add various outputs
- update var names in the CI script
0.0.5 - 2018-02-17
- add IAM baseline module
- use consistent resource namings
0.0.4 - 2018-02-12
- enable GuardDuty in all regions
0.0.3 - 2018-02-12
- output an ID of the audit log bucket
- broken output value