# C7n Community Meeting Minutes # May 24th 2022 :::info - **URL:** meet.google.com/mii-evqh-esh - **Date:** May 24th, 2022 (3:00 PM (ET) / 12:00 PM (PT) / 7PM (UTC)) - **[Timezone Converter (Click me)](https://www.timeanddate.com/worldclock/converter.html?iso=20210629T190000&p1=tz_et&p2=tz_pt&p3=22&p4=240&p5=136&p6=176&p7=37&p8=248)** - **Agenda** 1. Intros `10m` 1. Agenda Items `20m` 1. PR Party `30m` - **Meeting Contact:** Jorge: <jorge@stacklet.io> - **Video URL**: https://youtu.be/9gJJHDOzSpQ - **Video Archive and Transcripts**: https://mtngs.io/cloud-custodian/community-meetings/ - [![Video Recording](https://img.youtube.com/vi/9gJJHDOzSpQ/0.jpg)](https://www.youtube.com/watch?v=9gJJHDOzSpQ) ::: ## Agenda Item - How was KubeCon? - We're going to SCaLE! - https://www.socallinuxexpo.org/scale/19x - ping @castrojo if you want to hang out! - Proposal for a membership governenance structure: - https://github.com/cloud-custodian/cloud-custodian/issues/7149 - Should we turn on github discussions? - And then turn off questions in github issues and use discussions? - And then move the meetings notes there as well. - TODO: Jorge to remove github template for questions and link to discussions, create a structure there, provider sections, developer sections. - Release announcements. We'll keep the mailing list. - Meeting notes now AI-transcribed, check it out: - https://mtngs.io/cloud-custodian/community-meetings/ - https://mtngs.io/ for other OSS projects. ## PR's Opened * :boom: [#7269](https://github.com/cloud-custodian/cloud-custodian/pull/7269): releng - patch c7n_gcp and c7n_azure to address dependency conflicts * [#7267](https://github.com/cloud-custodian/cloud-custodian/pull/7267): gcp - sourcerepo - fix typo in scope_template * [#7263](https://github.com/cloud-custodian/cloud-custodian/pull/7263): aws - glue-catalog - Use the QueryResourceManager * [#7261](https://github.com/cloud-custodian/cloud-custodian/pull/7261): aws - kinesis - add force parameter for deleting kinesis streams (#7260) * :boom: [#7255](https://github.com/cloud-custodian/cloud-custodian/pull/7255): Aws lakeformation * [#7254](https://github.com/cloud-custodian/cloud-custodian/pull/7254): Shiney aws/lakeformation * :boom: [#7252](https://github.com/cloud-custodian/cloud-custodian/pull/7252): Fsx backup checks * [#7251](https://github.com/cloud-custodian/cloud-custodian/pull/7251): Added aws-lakeformation support * [#7250](https://github.com/cloud-custodian/cloud-custodian/pull/7250): Fsx backup count * [#7241](https://github.com/cloud-custodian/cloud-custodian/pull/7241): aws - config-rule - support tag-based filtering for `config-rule` * :boom: [#7237](https://github.com/cloud-custodian/cloud-custodian/pull/7237): ci - deploy docs to gh-pages on push to main * [#7236](https://github.com/cloud-custodian/cloud-custodian/pull/7236): AWS - Lambda - Add Lambda@Edge filter * [#7235](https://github.com/cloud-custodian/cloud-custodian/pull/7235): releng - cask dep security updates * [#7231](https://github.com/cloud-custodian/cloud-custodian/pull/7231): Reference the proper policy object so we can get the name * [#7230](https://github.com/cloud-custodian/cloud-custodian/pull/7230): aws - es - new cross-cluster es connection filter * [#7229](https://github.com/cloud-custodian/cloud-custodian/pull/7229): new cross-cluster filter for elasticsearch * [#7228](https://github.com/cloud-custodian/cloud-custodian/pull/7228): new cross-cluster filter for elasticsearch * :boom: [#7227](https://github.com/cloud-custodian/cloud-custodian/pull/7227): AWS - Workspaces - Add deregister action * [#7226](https://github.com/cloud-custodian/cloud-custodian/pull/7226): AWS - Workspaces - deregister action * [#7224](https://github.com/cloud-custodian/cloud-custodian/pull/7224): aws - elb - Added new filter target group with http ## PR's Closed * [#7267](https://github.com/cloud-custodian/cloud-custodian/pull/7267): gcp - sourcerepo - fix typo in scope_template * [#7261](https://github.com/cloud-custodian/cloud-custodian/pull/7261): aws - kinesis - add force parameter for deleting kinesis streams (#7260) * [#7255](https://github.com/cloud-custodian/cloud-custodian/pull/7255): Aws lakeformation * [#7254](https://github.com/cloud-custodian/cloud-custodian/pull/7254): Shiney aws/lakeformation * [#7251](https://github.com/cloud-custodian/cloud-custodian/pull/7251): Added aws-lakeformation support * [#7250](https://github.com/cloud-custodian/cloud-custodian/pull/7250): Fsx backup count * [#7241](https://github.com/cloud-custodian/cloud-custodian/pull/7241): aws - config-rule - support tag-based filtering for `config-rule` * [#7237](https://github.com/cloud-custodian/cloud-custodian/pull/7237): ci - deploy docs to gh-pages on push to main * [#7236](https://github.com/cloud-custodian/cloud-custodian/pull/7236): AWS - Lambda - Add Lambda@Edge filter * [#7235](https://github.com/cloud-custodian/cloud-custodian/pull/7235): releng - cask dep security updates * [#7231](https://github.com/cloud-custodian/cloud-custodian/pull/7231): Reference the proper policy object so we can get the name * [#7230](https://github.com/cloud-custodian/cloud-custodian/pull/7230): aws - es - new cross-cluster es connection filter * [#7229](https://github.com/cloud-custodian/cloud-custodian/pull/7229): new cross-cluster filter for elasticsearch * [#7228](https://github.com/cloud-custodian/cloud-custodian/pull/7228): new cross-cluster filter for elasticsearch * [#7226](https://github.com/cloud-custodian/cloud-custodian/pull/7226): AWS - Workspaces - deregister action * [#7224](https://github.com/cloud-custodian/cloud-custodian/pull/7224): aws - elb - Added new filter target group with http * [#7203](https://github.com/cloud-custodian/cloud-custodian/pull/7203): releng - 0.9.16.0 version increment, deps rebase * [#7181](https://github.com/cloud-custodian/cloud-custodian/pull/7181): Fix a defect where Tag filters don't work on IAM Profiles * [#6352](https://github.com/cloud-custodian/cloud-custodian/pull/6352): AWS - Elasticsearch cross cluster search connections ## Issues Opened * [#7272](https://github.com/cloud-custodian/cloud-custodian/issues/7272): c7n_mailer - allow additional parameters to be passed via mailer.yml to use AWS SES * :boom: [#7271](https://github.com/cloud-custodian/cloud-custodian/issues/7271): Azure: Not able to see any Functions Within the Function App * [#7270](https://github.com/cloud-custodian/cloud-custodian/issues/7270): No format called txt - need to update the documentation * :boom: [#7268](https://github.com/cloud-custodian/cloud-custodian/issues/7268): c7n_org Error running policy global exception: azure provider not installed using c7n-org docker * [#7266](https://github.com/cloud-custodian/cloud-custodian/issues/7266): Do you have sample output for below policies? * [#7265](https://github.com/cloud-custodian/cloud-custodian/issues/7265): How do you deal with "Rate exceeded"? * [#7264](https://github.com/cloud-custodian/cloud-custodian/issues/7264): 1.13 – Ensure MFA is enabled for the root user (CIS Benchmark) * [#7262](https://github.com/cloud-custodian/cloud-custodian/issues/7262): GCP - creation of cloud function for event based policies unable to use artifact registry via cloud build * [#7260](https://github.com/cloud-custodian/cloud-custodian/issues/7260): AWS - Kinesis Streams - Support `EnforceConsumerDeletion` parameter when deleting to bypass `ResourceInUseException` * [#7259](https://github.com/cloud-custodian/cloud-custodian/issues/7259): Cloud Custodian Only Performs Scans in Us-East-1 and Us-West-2 * [#7258](https://github.com/cloud-custodian/cloud-custodian/issues/7258): Attach Boundary Policy questions * [#7257](https://github.com/cloud-custodian/cloud-custodian/issues/7257): Add Owner Tag to AWS Accounts * :boom: [#7256](https://github.com/cloud-custodian/cloud-custodian/issues/7256): ERROR: Could not build wheels for backports.zoneinfo, which is required to install pyproject.toml-based projects * [#7253](https://github.com/cloud-custodian/cloud-custodian/issues/7253): AWS China Lambda Not Triggering * [#7249](https://github.com/cloud-custodian/cloud-custodian/issues/7249): Azure Deployment via Helm "repo tools not found" * [#7248](https://github.com/cloud-custodian/cloud-custodian/issues/7248): AWS Workspaces 'c7n:ConnectionStatus' Failing * [#7247](https://github.com/cloud-custodian/cloud-custodian/issues/7247): [GCP] sourcerepo resource type fails to scan * :boom: [#7246](https://github.com/cloud-custodian/cloud-custodian/issues/7246): Conflicting versions of python packages across providers * [#7245](https://github.com/cloud-custodian/cloud-custodian/issues/7245): Where can I find docs for all types of keys that I can use in my policies? * [#7244](https://github.com/cloud-custodian/cloud-custodian/issues/7244): How do you deal with 'false positives'? * [#7243](https://github.com/cloud-custodian/cloud-custodian/issues/7243): AWS Backups - List Protected Resource Types * [#7242](https://github.com/cloud-custodian/cloud-custodian/issues/7242): AWS Guard Duty - List Findings Support Needed * [#7240](https://github.com/cloud-custodian/cloud-custodian/issues/7240): mark-for-op support for aws.cfn resource * [#7239](https://github.com/cloud-custodian/cloud-custodian/issues/7239): Support for AWS Organizations * [#7238](https://github.com/cloud-custodian/cloud-custodian/issues/7238): Support for IAM Boundary Policy * [#7234](https://github.com/cloud-custodian/cloud-custodian/issues/7234): Custodian Prefix not available for GCP CloudFunction * [#7233](https://github.com/cloud-custodian/cloud-custodian/issues/7233): What permissions/roles does cloud-custodian require for each cloud type? * [#7232](https://github.com/cloud-custodian/cloud-custodian/issues/7232): Add action to deprecate an AWS AMI * [#7225](https://github.com/cloud-custodian/cloud-custodian/issues/7225): Add deregister action for workspaces-directory ## Issues Closed * [#7272](https://github.com/cloud-custodian/cloud-custodian/issues/7272): c7n_mailer - allow additional parameters to be passed via mailer.yml to use AWS SES * [#7266](https://github.com/cloud-custodian/cloud-custodian/issues/7266): Do you have sample output for below policies? * [#7265](https://github.com/cloud-custodian/cloud-custodian/issues/7265): How do you deal with "Rate exceeded"? * [#7264](https://github.com/cloud-custodian/cloud-custodian/issues/7264): 1.13 – Ensure MFA is enabled for the root user (CIS Benchmark) * [#7260](https://github.com/cloud-custodian/cloud-custodian/issues/7260): AWS - Kinesis Streams - Support `EnforceConsumerDeletion` parameter when deleting to bypass `ResourceInUseException` * [#7259](https://github.com/cloud-custodian/cloud-custodian/issues/7259): Cloud Custodian Only Performs Scans in Us-East-1 and Us-West-2 * [#7258](https://github.com/cloud-custodian/cloud-custodian/issues/7258): Attach Boundary Policy questions * [#7257](https://github.com/cloud-custodian/cloud-custodian/issues/7257): Add Owner Tag to AWS Accounts * [#7244](https://github.com/cloud-custodian/cloud-custodian/issues/7244): How do you deal with 'false positives'? * [#6319](https://github.com/cloud-custodian/cloud-custodian/issues/6319): AWS - elasticsearch cross-cluster-search-connections Value Filter