Skip to main content

29.aws-inpecter-gaurd-securet-macie

29.aws-inpecter-gaurd-securet-macie



Security, Identity, & Compliance:( Inspector )


...
1.Inspector:

Project Hand over Time all checks(Only on EC2),Clinte euired for all os  and
gives Report( Amazon Inspector - Assessment Report Findings Report)
OS Harding,For secure...checking..cis bench mark Amazon linux,


install vm...
install nginx web server.
install clinte of inspecter..below

inspecter agent doc
https://docs.aws.amazon.com/inspector/latest/userguide/inspector_installing-uninstalling-agents.html#install-run-command

wget https://inspector-agent.amazonaws.com/linux/latest/install
.[root@ip-10-1-1-100 ~]# wget https://inspector-agent.amazonaws.com/linux/latest/
......
.[root@ip-10-1-1-100 ~]# ll
total 36
-rw-r--r-- 1 root root 35713 Dec  6 21:26 install
.[root@ip-10-1-1-100 ~]# chmod 700 install
.[root@ip-10-1-1-100 ~]# ll
total 36
-rwx------ 1 root root 35713 Dec  6 21:26 install
.[root@ip-10-1-1-100 ~]# ./install

Go-inspector-Assessment target-Create-Name,Key selct instance tage,-Save
.Assessment Templetes-Create-Name,target(select),Rules packages(select all),Duration(15mintus),
uncheck@Assesment Schedlu,-Create and Run. (31.24) go...
.



.......................................



2.secretes manager(12.14),,,,,.....

DB username,password given from hear, not in code, so code retrives and takes this id,pass and complet operation, for secur purpus..



https://aws.amazon.com/blogs/security/how-to-create-and-retrieve-secrets-managed-in-aws-secrets-manager-using-aws-cloudformation-template/


3.gaurd duty.(16.58)....

.{IDS- Intrusion Dection Service(Protection from in aws nothing Gaurd Duty)
 ;IPS- Intrusion Protection Service (Protection frm Hackers)}

.using logs(cloud trail,VPC floelog,DNSLogs) -




4.amazone macie ....(27.43)


mor inf   
https://www.youtube.com/watch?v=LCjX2rsQ2wA

Comments

Popular posts from this blog

36.Migration & Transfer

36.Migration & Transfer Migration & Transfer:::...... .............................................. 1.Snowball::(data moving only,like box, 10gb connectivety, 80terrabytes supportes one box,encripted for portable purpouse ,aws snow mobi- like truck 40gb connectivety bunch of snow balles in side truck, we use this services for not having enf bandwidth, snowball edge.study dock) 2.Server Migration Service:: ( virtual servers not for physical servers, free tool,  google search aws sms limits, onprimisess to cloude, to over com use 3rd party tools lik platespin migrate aws,cloud endure,zerto aws )  15.54 .. video harshas desktop..(google - aws sms user guide,planning diffuclt but implementation easy,  google - aws 6r , acess key and security key required,replication,finally creating AMI) 3.Database Migration Service(crating one instnce to take replication from on premisiss to stor in aws RDS,or more given directions,trasfer over vpn) 4.AWS Migration...

42-AWS-PROJECT-CERTIFATION

42-AWS-PROJECT-CERTIFATION ... GOOGLE....aws 6r..... 1. 2. 3. 4. 5. 6. PRE SALE -POST SALE::: DPR: Detailed PROJECT REPORT. RFI : REQUSTE FOR INF. RFP : REQUEST FOR PROPEROSAL RFQ : REQ     FOR QOOTE POC: PROOF OF CONCEPT HLD: HIGH LEVEL DEGINE  CEO,LEVEL,  HIG LEVEL DIAGROM LLD: LOW LEVEL DEGINE  .. AWS , VPC, ...... BUILD SHETT: FULL DETIALS OF IP NO.. ALL PIN TO PIN UAT: USER ACCEPTANCEY TEST ORT: OPERATION REDINESS TEST SING OFF : REMAINING AMOUT COLLECT CLOSE ARCHITECTURE: AWS CERTIFICATION: Jayandra Patil AWS .............. AWS sysops bluprint

43-Dev-git cmds

43-Dev-git cmds Harsha Veerapalli... .git clone https://github.com/username/repository  git clone https://github.com/NAVEENMJ/1 git status .git init .git status ... getting red cloure  ( a.txt ) .git add file.txt or  (git add .) .git push .git push -u origin master .................. .git branch ---list of branches .git checkout -b branch ...Creaing branches .git merge branch ... presnt in master then merge.. ................................... .git status .git init .git status ... getting red cloure  ( a.txt ) .git add file.txt .git status .... getting green cloure  ( new file: a.txt) [if multipull files in folder use git add .] .git commit -m "COMMIT-1" .. Hear COMMIT-1 Means giving name in genralli changed  name given .git log ......changes ...times.. modifi that file a.txt...... .git status .git add . .git status .git commit -m "COMMIT-2" .cls .git log ..........i want go before comited version....