Deployment November 8, 2023

IMPROVEMENT Compliance Rulesets Update - 13:00 UTC

Description: New Ruleset Kubernetes CIS Benchmark v1.8.0; New AWS rules. A complete list can be found here.

Case ID: CNAPP-4368, DFT-2917
Known limitations: N/A 
Affected Components: COMPLIANCE RULESETS

FIXED UI text fix needed for Azure Secret ID - 10:40 UTC

Description: Rename application key to Secret ID to be the same as in Azure portal
Case ID: DFT-2522
Known limitations: N/A
Affected Components: ui

feature AWS Config Rule - 10:30 UTC

Description: Added support for AWS Config Rule in Compliance Engine and Protected Assets.
Case ID: DFR-2895
Known limitations: N/A
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS

feature AWS Comprehend - 10:30 UTC

Description: Added support for 2 new entities:

  • AWS Comprehend Flywheel

  • AWS Comprehend Endpoint

The entities are supported in Compliance Engine and Protected Assets.
Case ID: CNAPP-3514
Known limitations: N/A
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS

feature AWS ComputeOptimizer RecommendationSummary - 10:30 UTC

Description: Added support for AWS ComputeOptimizer RecommendationSummary in Compliance Engine and Protected Assets.
Case ID: CNAPP-2151
Known limitations: N/A
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS

feature AWS LakeFormation DataLake Settings - 10:30 UTC

Description: Added support for AWS LakeFormation DataLake Settings in Compliance Engine and Protected Assets.
Case ID: CNAPP-3500
Known limitations: N/A
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS

feature AWS FinSpace Environment - 10:30 UTC

Description: Added support for AWS Finspace Environment in Compliance Engine and Protected Assets.
Case ID: CNAPP-3499
Known limitations: N/A
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS

feature AWS Verified Permissions - 10:30 UTC

Description: Added support for AWS VerifiedPermissionsPolicyStore entity in Compliance Engine and Protected Assets.
Case ID: CNAPP-3515
Known limitations: N/A
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS

feature AWS Forecast - 10:30 UTC

Description: Added support for 6 new entities:

  • AWS Forecast Dataset

  • AWS Forecast Dataset Group

  • AWS Forecast

  • AWS Forecast Monitor

  • AWS Forecast Explainability

  • AWS Forecast Predictor

The entities are supported in Compliance Engine and Protected Assets.
Case ID: CNAPP-1447
Known limitations: N/A
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS

FIXED Aws AppRunner - 10:30 UTC

Description: 2 redundant properties were removed from the “AppRunnerAutoScalingConf” entity: configurationDescription.autoScalingConfigurationName & configurationDescription.autoScalingConfigurationRevision.
Case ID: IN-8371
Known limitations: N/A
Affected Components: COMPLIANCE ENGINE FETCHERS

feature GCP Machine Image - 10:30 UTC

Description: Added support for GCP Machine Image in Compliance Engine and Protected Assets.
Case ID: CNAPP-4735
Known limitations: N/A
Affected Components: COMPLIANCE ENGINE FETCHERS PROTECTED ASSETS

IMPROVEMENT GCP Virtual Machine Instance - 10:30 UTC

Description: Added a new property to the “VMInstance” entity: sourceMachineImage.
Case ID: CNAPP-4737
Known limitations: N/A
Affected Components: COMPLIANCE ENGINE

FIXED AWS ElastiCache - 10:30 UTC

Description: AwsElasticCache Fetcher now supports China region
Case ID: IN-1907
Known limitations: N/A
Affected Components: Fetchers

FIXED Azure Virtual Machine - 08:00 UTC

Description: Fixed the type of "publicIpAllocationMethod" from int to string. This issue caused failures in GSL queries.
Case ID: DFT-848
Known limitations: N/A
Affected Components: COMPLIANCE ENGINE api PROTECTED ASSETS