2 個答案
- 最新
- 最多得票
- 最多評論
0
For CloudFormation based stacks, you could run a drift-detection and emit a custom metric and alert should drift be found. To automate the process, you could set up a custom AWS Config rule to run the drift detection.
已回答 2 年前
0
I meant not tracking drift status
terraform was introduced relatively recently in our infrastructure, before that it was deployed through a self-written platform on nodejs
Right now we want to monitor security group and vpc for manual changes (someone went into the console and changed it manually) in the eventbridge solution, we tracked userAgent through exclusions (we excluded terraform, our deployment platform)
as I wrote above, the solutions of eventbridge and cloudwatch alarm are not suitable for us
已回答 2 年前
相關內容
- AWS 官方已更新 9 個月前
This does not work. Solution is not stable and can not see differences.