Skip to content

Releases: OpenSecOps-Org/Installer

v2.6.1

22 Jan 10:37

Choose a tag to compare

  • Added protection for switching boundary permissions using SCP.

Full Changelog: v2.6.0...v2.6.1

v2.6.0

03 Oct 11:11

Choose a tag to compare

  • Added IAM user management permissions to SecurityAdministratorAccess role in protect-foundations.json SCP.
  • Added backup:* and backup-storage:* permissions to DeveloperAccess SSO permission set and permission boundary.

Full Changelog: v2.5.5...v2.6.0

v2.5.5

11 Jul 16:36

Choose a tag to compare

  • Added vpce:AllowMultiRegion to the NetworkAdministratorAccess SSO Permission Set.

Full Changelog: 2.5.5...v2.5.5

v2.5.4

28 Jun 11:57

Choose a tag to compare

  • Updated ARCHITECTURE.md.

Full Changelog: v2.5.3...v2.5.4

v2.5.3

28 Jun 11:47

Choose a tag to compare

  • Fixed zsh comments.
  • Fixed deploy script for Foundation-security-services-setup. Distributed to all repos.
  • Added ARCHITECTURE.md, describing the operation of the OpenSecOps Installer and its scripts.
  • Added header doc strings to all scripts under scripts/.
  • Fixed script execution to properly pass --verbose flag to component scripts when using verbose mode.
  • Added Foundation-security-services-setup component to automate AWS security services configuration (GuardDuty, Security Hub, IAM Access Analyzer, AWS Config, Detective, and Inspector delegation and setup across the organization), including updates to apps.exampleconfiguration files.
  • Added data/ML services (Athena, Batch, CloudShell, Glue, QuickSight, SageMaker) to DeveloperAccess permission sets.

Full Changelog: v2.5.2...v2.5.3

v2.3.0

15 Jun 15:52

Choose a tag to compare

  • Added ReclassifyAWSHealthIncidents parameter to OpenSecOps SOAR example configuration to support AWS Health incident reclassification feature introduced in OpenSecOps SOAR v2.2.0, reducing false positives.

Full Changelog: v2.2.0...v2.3.0

v2.2.0

14 Jun 12:27

Choose a tag to compare

  • Added the developer SSO group to the default configuration in /apps.example. This also matches the default account request templates in our tailored version of Foundation-AFT-account-request, for easier setup.
  • The SSO Group prefix is now by default the empty string, "".

Full Changelog: v2.1.0...v2.2.0

v2.1.0

23 May 07:48

Choose a tag to compare

  • The default model in apps.example for Claude updated to Claude Sonnet v4.

Full Changelog: v2.0.3...v2.1.0

v2.0.3

16 May 09:18

Choose a tag to compare

  • Corrected indentation in the SecurityAdministratorAccess.yaml file
  • Changes to the README

Full Changelog: v2.0.2...v2.0.3

v2.0.2

21 Apr 12:23

Choose a tag to compare

Full Changelog: v2.0.1...v2.0.2