• Home
  • Privacy Policy
Breaking News, US News, World News and Bollywood News
  • Home
  • Technology
    Google Cloud launches services to bolster open-source security, simplify zero-trust rollouts

    Google Cloud launches services to bolster open-source security, simplify zero-trust rollouts

    You’re doing cloudops planning too late

    You’re doing cloudops planning too late

    Kotlin 1.7.0 beta alters builder type inference

    Kotlin 1.7.0 beta alters builder type inference

    Only DevSecOps can save the metaverse

    Only DevSecOps can save the metaverse

    Top technologists have job options: 5 tips for retention

    Top technologists have job options: 5 tips for retention

    CNCF launches ethics in open source training course

    CNCF launches ethics in open source training course

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
  • Entertainment
    Star Wars leak: ‘Darth Vader’s Padawan to be introduced alongside returning prequel Jedi’ | Films | Entertainment

    Star Wars leak: ‘Darth Vader’s Padawan to be introduced alongside returning prequel Jedi’ | Films | Entertainment

    FIFA 22 DOWN: EA servers status latest, unable to connect issues hit | Gaming | Entertainment

    FIFA 22 DOWN: EA servers status latest, unable to connect issues hit | Gaming | Entertainment

    Daily Quordle 114 hints for May 18 – Spoiler-free clues to help you with today’s answer | Gaming | Entertainment

    Daily Quordle 114 hints for May 18 – Spoiler-free clues to help you with today’s answer | Gaming | Entertainment

    Wordle 333 May 18 HINTS – Struggling with today’s Wordle? Three clues to help with answer | Gaming | Entertainment

    Wordle 333 May 18 HINTS – Struggling with today’s Wordle? Three clues to help with answer | Gaming | Entertainment

    EA DOWN – EA servers status report for FIFA 22, Battlefield, Madden NFL and more | Gaming | Entertainment

    EA DOWN – EA servers status report for FIFA 22, Battlefield, Madden NFL and more | Gaming | Entertainment

    Sony reveals games heading to new PS Plus: Ghost of Tsushima, Syphon Filter, RDR2 | Gaming | Entertainment

    Sony reveals games heading to new PS Plus: Ghost of Tsushima, Syphon Filter, RDR2 | Gaming | Entertainment

    Trending Tags

      • Bollywood
      • Hollywood
      • Music
    • Lifestyle
      Houseplant watering methods to avoid overwatering – ‘key to survival’

      Houseplant watering methods to avoid overwatering – ‘key to survival’

      Lawn: ‘The only way’ to ‘effectively’ remove dandelion weeds – makes the job ‘easier’

      Lawn: ‘The only way’ to ‘effectively’ remove dandelion weeds – makes the job ‘easier’

      Cleaning: How to clean a BBQ – natural cleaning hack

      Cleaning: How to clean a BBQ – natural cleaning hack

      When to plant courgettes outside – the ‘safest’ time when ‘risk of frost has passed’

      When to plant courgettes outside – the ‘safest’ time when ‘risk of frost has passed’

      How to kill weeds without harming grass – 4 best ways to get rid of weeds and ingredients

      How to kill weeds without harming grass – 4 best ways to get rid of weeds and ingredients

      Garden furniture: Key thing to look out for when buying rattan

      Garden furniture: Key thing to look out for when buying rattan

      Trending Tags

      • Golden Globes
      • Game of Thrones
      • MotoGP 2017
      • eSports
      • Fashion Week
    • Nature
    • Business
    • Health
      • Food
    • Fashion
    • Science
    • Sports
    • Travel
    • World News
    No Result
    View All Result
    • Home
    • Technology
      Google Cloud launches services to bolster open-source security, simplify zero-trust rollouts

      Google Cloud launches services to bolster open-source security, simplify zero-trust rollouts

      You’re doing cloudops planning too late

      You’re doing cloudops planning too late

      Kotlin 1.7.0 beta alters builder type inference

      Kotlin 1.7.0 beta alters builder type inference

      Only DevSecOps can save the metaverse

      Only DevSecOps can save the metaverse

      Top technologists have job options: 5 tips for retention

      Top technologists have job options: 5 tips for retention

      CNCF launches ethics in open source training course

      CNCF launches ethics in open source training course

      Trending Tags

      • Nintendo Switch
      • CES 2017
      • Playstation 4 Pro
      • Mark Zuckerberg
    • Entertainment
      Star Wars leak: ‘Darth Vader’s Padawan to be introduced alongside returning prequel Jedi’ | Films | Entertainment

      Star Wars leak: ‘Darth Vader’s Padawan to be introduced alongside returning prequel Jedi’ | Films | Entertainment

      FIFA 22 DOWN: EA servers status latest, unable to connect issues hit | Gaming | Entertainment

      FIFA 22 DOWN: EA servers status latest, unable to connect issues hit | Gaming | Entertainment

      Daily Quordle 114 hints for May 18 – Spoiler-free clues to help you with today’s answer | Gaming | Entertainment

      Daily Quordle 114 hints for May 18 – Spoiler-free clues to help you with today’s answer | Gaming | Entertainment

      Wordle 333 May 18 HINTS – Struggling with today’s Wordle? Three clues to help with answer | Gaming | Entertainment

      Wordle 333 May 18 HINTS – Struggling with today’s Wordle? Three clues to help with answer | Gaming | Entertainment

      EA DOWN – EA servers status report for FIFA 22, Battlefield, Madden NFL and more | Gaming | Entertainment

      EA DOWN – EA servers status report for FIFA 22, Battlefield, Madden NFL and more | Gaming | Entertainment

      Sony reveals games heading to new PS Plus: Ghost of Tsushima, Syphon Filter, RDR2 | Gaming | Entertainment

      Sony reveals games heading to new PS Plus: Ghost of Tsushima, Syphon Filter, RDR2 | Gaming | Entertainment

      Trending Tags

        • Bollywood
        • Hollywood
        • Music
      • Lifestyle
        Houseplant watering methods to avoid overwatering – ‘key to survival’

        Houseplant watering methods to avoid overwatering – ‘key to survival’

        Lawn: ‘The only way’ to ‘effectively’ remove dandelion weeds – makes the job ‘easier’

        Lawn: ‘The only way’ to ‘effectively’ remove dandelion weeds – makes the job ‘easier’

        Cleaning: How to clean a BBQ – natural cleaning hack

        Cleaning: How to clean a BBQ – natural cleaning hack

        When to plant courgettes outside – the ‘safest’ time when ‘risk of frost has passed’

        When to plant courgettes outside – the ‘safest’ time when ‘risk of frost has passed’

        How to kill weeds without harming grass – 4 best ways to get rid of weeds and ingredients

        How to kill weeds without harming grass – 4 best ways to get rid of weeds and ingredients

        Garden furniture: Key thing to look out for when buying rattan

        Garden furniture: Key thing to look out for when buying rattan

        Trending Tags

        • Golden Globes
        • Game of Thrones
        • MotoGP 2017
        • eSports
        • Fashion Week
      • Nature
      • Business
      • Health
        • Food
      • Fashion
      • Science
      • Sports
      • Travel
      • World News
      No Result
      View All Result
      Updates News
      No Result
      View All Result
      Home Technology

      Do your AWS deployments match your Terraform definitions? Use SQL to find out.

      admin by admin
      May 13, 2022
      in Technology
      0
      Does your deployed infrastructure match what you defined?
      0
      SHARES
      15
      VIEWS
      Share on FacebookShare on Twitter


      In “How SQL can unify access to APIs” I made the case for SQL as a common environment in which to reason about data flowing from many different APIs. The key enabler of that scenario is Steampipe, a Postgres-based tool with a growing suite of API plugins that map APIs to foreign tables in Postgres.

      These APIs were, initially, the ones provided by AWS, Azure, and GCP. Such APIs are typically made more accessible to developers by way of wrappers like boto3. A common SQL interface is arguably a better unifier of the sprawling API ecosystems within these clouds, and that’s inarguably true in multicloud scenarios. With Postgres under the hood, by the way, you’re not restricted to SQL: You can hook Python or JavaScript or another language to Postgres and leverage the common SQL interface from those languages too.

      The Steampipe ecosystem then expanded with plugins for many other services including GitHub, Google Workspace, IMAP, Jira, LDAP, Shodan, Slack, Stripe, and Zendesk. Joining across these APIs is a superpower best proven by this example that joins Amazon EC2 endpoints with Shodan vulnerabilities in just 10 lines of very basic SQL.

      select
        a.instance_id,
        s.ports
        s.vulns
      from
        aws_ec2_instance a
      left join
        shodan_host s on a.public_ip_address = s.ip
      where
        a.public_ip_address is not null;
      
      +---------------------+----------+--------------------+
      | instance_id         | ports    | vulns              |
      +---------------------+----------+--------------------+
      | i-0dc60dd191cb84239 | null     | null               |
      | i-042a51a815773780d | [80,22]  | null               |
      | i-00cf426db9b8a58b6 | [22]     | null               |
      | i-0e97f373db42dfa3f | [22,111] | ["CVE-2018-15919"] |
      +---------------------+----------+--------------------+
      

      Files are APIs too

      But what is an API, really? Must it always entail HTTP requests to service endpoints? More broadly APIs are data sources that come in other flavors too. Web pages are often, still, de facto APIs. I’ve done more web scraping than I care to think about over the years and the skill remains useful.

      Files are also data sources: configuration files (INI, YAML, JSON), infrastructure-as-code files (Terraform, CloudFormation), data files (CSV). When plugins for these sources began to join the mix, Steampipe became even more powerful.

      First came the CSV plugin, which unlocked all sorts of useful queries. Consider, for example, how we often pretend spreadsheets are databases. In doing so we can assume there’s referential integrity when really there isn’t. If you export spreadsheet data to CSV, you can use SQL to find those flawed assumptions. And that’s just one of the endless ways I can imagine using SQL to query the world’s leading file format for data exchange.

      Then came the Terraform plugin, which queries Terraform files to ask and answer questions like: “Which trails are not encrypted?”

      select
        name,
        path
      from
        terraform_resource
      where
        type="aws_cloudtrail"
        and arguments -> 'kms_key_id' is null;
      

      Using the AWS plugin’s aws_cloudtrail_trail table, we can ask and answer the same question for deployed infrastructure, and return a result set that you could UNION with the first one.

      select
        name,
        arn as path
      from
        aws_cloudtrail_trail
      where
        kms_key_id is null;
      

      Ideally the answers will always be the same. What you said should be deployed, using Terraform, should match what’s actually deployed if you query AWS APIs. In the real world, of course, maintenance and/or incident response can result in configuration drift. Given a common way to reason over defined and deployed infrastructure, we can manage such drift programmatically.

      Belt and suspenders

      For deployed infrastucture, Steampipe has long provided a suite of mods that layer security and compliance checks onto API-derived foreign tables. The AWS Compliance mod, for example, provides benchmarks and controls to check deployed infrastructure against eleven standards and frameworks including CIS, GDPR, HIPAA, NIST 800-53, and SOC 2.

      steampipe aws cis v140 console IDG

      With the advent of the Terraform plugin it became possible to create complementary mods, like Terraform AWS Compliance, that provide the same kinds of checks for defined infrastructure.

      steampipe terraform aws compliance console output IDG

      Does what you defined last month match what you deployed yesterday? A satisfactory answer requires the ability to reason over defined and deployed infrastructure in a common and frictionless way. SQL can’t remove all the friction but it’s a powerful solvent.

      Copyright © 2022 IDG Communications, Inc.



      Source link

      admin

      admin

      • Trending
      • Comments
      • Latest
      Plant warning as bamboo causes £100,000 of damage to Hampshire property

      Plant warning as bamboo causes £100,000 of damage to Hampshire property

      January 31, 2022
      Social workers warned weeks before baby Mitchell died in 2019 | TV & Radio | Showbiz & TV

      Social workers warned weeks before baby Mitchell died in 2019 | TV & Radio | Showbiz & TV

      January 2, 2022
      Yorkshire nan on how to make Yorkshire puddings with no ingredients weighed

      Yorkshire nan on how to make Yorkshire puddings with no ingredients weighed

      February 15, 2022
      Newcastle transfer news: Last-gasp offer made for Dele Alli in late Everton hijack attempt | Football | Sport

      Newcastle transfer news: Last-gasp offer made for Dele Alli in late Everton hijack attempt | Football | Sport

      January 31, 2022
      Lady Gabriella Windsor married in £3m ‘beautiful Russian inspired’ tiara three years ago

      Lady Gabriella Windsor married in £3m ‘beautiful Russian inspired’ tiara three years ago

      0
      Boris Johnson slammed by Indie band for using their song ‘Blue Bunch Of Corrupt W****rs’ | Music | Entertainment

      Boris Johnson slammed by Indie band for using their song ‘Blue Bunch Of Corrupt W****rs’ | Music | Entertainment

      0
      Call Your Mom, Because Sue Grafton’s Alphabet Murder Mystery Books Are Becoming A Show

      Call Your Mom, Because Sue Grafton’s Alphabet Murder Mystery Books Are Becoming A Show

      0
      Release Date, Cast, And More

      Release Date, Cast, And More

      0
      Lady Gabriella Windsor married in £3m ‘beautiful Russian inspired’ tiara three years ago

      Lady Gabriella Windsor married in £3m ‘beautiful Russian inspired’ tiara three years ago

      May 18, 2022
      Energy boss tells Sunak to slash EU red tape to reduce bills by £100 ‘right now’ | Science | News

      Energy boss tells Sunak to slash EU red tape to reduce bills by £100 ‘right now’ | Science | News

      May 18, 2022
      Google Cloud launches services to bolster open-source security, simplify zero-trust rollouts

      Google Cloud launches services to bolster open-source security, simplify zero-trust rollouts

      May 18, 2022
      Star Wars leak: ‘Darth Vader’s Padawan to be introduced alongside returning prequel Jedi’ | Films | Entertainment

      Star Wars leak: ‘Darth Vader’s Padawan to be introduced alongside returning prequel Jedi’ | Films | Entertainment

      May 18, 2022

      Recent News

      Lady Gabriella Windsor married in £3m ‘beautiful Russian inspired’ tiara three years ago

      Lady Gabriella Windsor married in £3m ‘beautiful Russian inspired’ tiara three years ago

      May 18, 2022
      Energy boss tells Sunak to slash EU red tape to reduce bills by £100 ‘right now’ | Science | News

      Energy boss tells Sunak to slash EU red tape to reduce bills by £100 ‘right now’ | Science | News

      May 18, 2022
      Google Cloud launches services to bolster open-source security, simplify zero-trust rollouts

      Google Cloud launches services to bolster open-source security, simplify zero-trust rollouts

      May 18, 2022
      Star Wars leak: ‘Darth Vader’s Padawan to be introduced alongside returning prequel Jedi’ | Films | Entertainment

      Star Wars leak: ‘Darth Vader’s Padawan to be introduced alongside returning prequel Jedi’ | Films | Entertainment

      May 18, 2022
      Breaking News, US News, World News and Bollywood News

      Follow Us

      Browse by Category

      • Bollywood
      • Business
      • Entertainment
      • Fashion
      • Food
      • Health
      • Hollywood
      • Lifestyle
      • Music
      • Nature
      • Science
      • Sports
      • Technology
      • Travel
      • World News

      Recent News

      Lady Gabriella Windsor married in £3m ‘beautiful Russian inspired’ tiara three years ago

      Lady Gabriella Windsor married in £3m ‘beautiful Russian inspired’ tiara three years ago

      May 18, 2022
      Energy boss tells Sunak to slash EU red tape to reduce bills by £100 ‘right now’ | Science | News

      Energy boss tells Sunak to slash EU red tape to reduce bills by £100 ‘right now’ | Science | News

      May 18, 2022
      • Home
      • Privacy Policy

      © 2021 Updates News

      No Result
      View All Result

      © 2021 Updates News