Skip to main content

Improvements to Stax Compliance

Stax
Stax
Stax Team

An update has been applied to Stax's Compliance module to improve performance and reliability.

The update implements stability updates to the underlying software and lays the foundation for upcoming feature releases.

No functional changes have been introduced. Should you experience any issues, please raise a support case.

Visualize your Savings Plans in Stax

Stax
Stax
Stax Team

You can now use Stax to visualize the Savings Plans purchased by your organization. The Savings Plans tab in the Cost module allows you to view a summary of all Savings Plans and visualize details about them. Read more.

This feature will be released to all Stax customers over the following weeks.

Update (July 18, 2022): This feature has been released to all Stax customers.

Dark mode removed from the Stax Console

Stax
Stax
Stax Team

Dark mode functionality has been removed from the Stax console.

For users wishing to view Stax in a dark color scheme, consider using a browser plugin such as DarkReader. Note that Stax is unable to provide support for these plugins.

Stax Workloads Update

Stax
Stax
Stax Team

An update has been applied to Stax Workloads to improve performance and reliability:

  • Fixed an issue where a Stax Workloads manifest would fail schema validation when using the ProtectedResources key.

These changes have been applied automatically by Stax. There is no impact to service expected as a result of this update. Should you experience any issues, please raise a support case.

Update to Rules - S3 Buckets Should Not Be Publicly Open

Stax
Stax
Stax Team

Stax has changed how Rules relating to S3 buckets being publicly open are evaluated by including the FULL_CONTROL**is not granted to groupsAllUsers**orAllAuthenticatedUsers check.

If you observe buckets that were previously compliant now showing as non-compliant, it is likely due to the stricter requirement for the bucket to meet the additional control described above. For more information and remediation, visit S3 Buckets shouldn't be Publicly Open.

Impacted Rule Name
Impacted Bundles
  • S3 Best Practices, version 1.0 * 1.1
  • Organization
S3 Buckets should not be Publicly Open for Reads
  • S3 Best Practices, version 1.0 * 1.1
  • Organization
S3 Buckets should not be Publicly Open for Reads and Writes
(Previously: S3 Buckets should not be Publicly Open)
  • S3 Best Practices, version 1.0 * 1.1
  • Organization
S3 Buckets should not be Publicly Open for Writes
  • S3 Best Practices, version 1.0 * 1.1
  • Organization
S3 Buckets should not be publicly open for read operations
  • Public Exposure, version 1.0
S3 Buckets should not be publicly open for read and write operations
(Previously: S3 Buckets should not be publicly open)
  • Public Exposure, version 1.0

Changes to Stax Rule Names

Stax
Stax
Stax Team

A number of Rule names have been updated to improve usability and clarity. This change applies to the following Rule Bundles:

  • APRA, version 1.0

  • EC2 Best Practice, version 1.0

  • IAM Best Practice, version 1.0

  • RDS Best Practice, version 1.0

  • SNS Best Practice, versions 1.0 and 1.1

  • SQS Best Practice, versions 1.0 and 1.1

  • S3 Best Practice, versions 1.0 and 1.1

  • Stax Foundation Compliance, version 1.0

In addition to these changes, Stax has added more detail to Rule descriptions, across all Rule Bundles, to provide a more detailed understanding of each Rule's intent and evaluation. These changes do not impact how Rules are evaluated.

If you have any questions regarding this change, please reach out to your Customer Success Manager or raise a support case with your inquiry.