The 4.2.0 release brings loads of new functionalities, features, and policies including the much-awaited C3M Risk Score which is an Industry-First.
All customers are encouraged to go through the new changes and take this upgrade.
For more information, please reach out to us at email@example.com.
Risk Score for Alerts
Alert Findings Screen
Alert Overview Dashboard
Just-in-Time Provisioning phase 2
Cross - Account Access
Ability to re-generate scheduled reports
Stream GCP IAM Logs using DataFlow
Support for custom roles while onboarding GCP Projects
Account Deletion Support
C3M now supports the deletion of cloud accounts from the UI. Administrators have permission to delete cloud accounts from the C3M Platform.
Note : The deleted account count would be added to your cloud license. However, you cannot re-onboard the same account again in C3M. If such a need arises, contact C3M Support.
New Compliance Support
Ensure CloudWatch metrics is enabled for Web ACL rules
Ensure Sampled Requests is enabled for Web ACL rules
Ensure Web ACL default action is set to ‘Block’ for allow conditions
Web ACL should have tags
Ensure ElastiCache clusters have tags
Ensure ElastiCache Redis clusters have in-transit encryption enabled
Ensure ElastiCache Redis clusters have at-rest encryption enabled
Ensure Multi-AZ feature is enabled for ElastiCache Redis clusters
Ensure DynamoDB tables are encrypted with customer-managed CMK
Ensure DynamoDB have tags
Ensure DynamoDB tables have Point in Time recovery enabled
Ensure unused DynamoDB tables are removed
Ensure Binary Authorization is enabled on Kubernetes Clusters
Ensure DNSSEC is enabled for Cloud DNS
Ensure Cloud DNS DNSSEC key-signing key is not created using RSASHA1
Ensure Cloud DNS DNSSEC zone-signing key is not created using RSASHA1
Ensure Cloud DNS zones have labels