Releases: cartography-cncf/cartography
Releases · cartography-cncf/cartography
0.13.0
0.12.0
0.11.0
- Change supported version of Neo4j from 3.2 to 3.5.
- Change AWS EC2 intel module to consume query results during ingestion.
- Remove using of old Neo4j driver API.
- Include projectnumber when loading GCP projects.
- Add interesting fields to RDS databases.
- Update incorrect Neo4j index - remove :Principal and add :AWSPrincipal.
- Fix bug in GSuite intel module which could cause partial data ingestion.
- Fix syntax error in Travis file.
- Ingest Google Cloud buckets.
0.10.0
0.9.0
- Added new lines to end of test files for Drift Detection tests are no longer inconsistent
- Drift Detection: refactored reporting to use lists instead of dicts to maintain result order
- Move GCP unit tests to tests/unit/cartography/intel
- Add support for AWS EC2 key pairs
- Fixed issue #123 - logic bug in import crxcavator extensions
- Sorted collect values in boltstatementrecords to enforce consistency with each database pull
0.8.0
- Added pre-commit linting
- Drift detection: allow
add_shortcuts()
to have shortcuts as arguments - Fixed #49 - Warn and return None when a NoSuchBucket error is caught from
get_bucket_acl()
- Added CRXcavator intel module to ingest Chrome extension data
- Fixed #104 - Drift Detection CLI failed occasionally
- Fixed #99 - improved how AWS ELBs are determined to be internet exposed
- IAM: fixed UnboundLocalError and added support for AWS IAM Federated Principals
- Added Drift Detection feature to track graph changes over time
0.7.0
0.6.0
- Add GCP firewalls, firewall allow and deny rules, network tags, connect firewall rules to IP ranges, GCP VPCs, subnets, network interfaces, NIC access configs
- Use partial_uri as unique identifier on GCP instances
- Add AWSPrincipal nodes to represent the root identity of each AWS account being synced
- Fix IAM statement parsing bug which would cause single-statement policies to crash sync
- Use policyuniverse to parse IAM statements and find role assumption permissions
- Ingest Global Secondary Indexes and more DynamoDB properties
- Change relationship between AWSPrincipal and AWSRole nodes to clarify the distinction between trust and permission relationships
- Add AWSPrincipal label to AWSRole nodes
- Integration tests are now configurable