<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: PCC/Manage/Defenders/Deploy/Defender/Single Defender/Container Defender - App Embedded/Fargate task generates JSON unacceptable to AWS in Prisma Cloud Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/519916#M771</link>
    <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/183942"&gt;@CloudEngineer&lt;/a&gt;&amp;nbsp; dude, you were correct the whole time.&amp;nbsp; &lt;SPAN&gt;The Prisma Cloud Compute SecurityHub Alert Provider works perfectly fine.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;I got misinformation from support case &lt;SPAN&gt;02326773&lt;/SPAN&gt;.&amp;nbsp; Here is how I determined that the Registry Scanned CVEs and Compliance vulnerabilities were generating Alerts and propogating them to AWS SecurityHub/Findings Console.&amp;nbsp; I entered this Filter criteria and then I could see the CVE-Alerts.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="TommyHunt_0-1667330936544.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/45063i2BA15E06AE615FAB/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="TommyHunt_0-1667330936544.png" alt="TommyHunt_0-1667330936544.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I still have NO explanation for those errors that I cited at the beginning of this&lt;/P&gt;</description>
    <pubDate>Tue, 01 Nov 2022 19:29:14 GMT</pubDate>
    <dc:creator>TommyHunt</dc:creator>
    <dc:date>2022-11-01T19:29:14Z</dc:date>
    <item>
      <title>PCC/Manage/Defenders/Deploy/Defender/Single Defender/Container Defender - App Embedded/Fargate task generates JSON unacceptable to AWS</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/517703#M732</link>
      <description>&lt;P&gt;&lt;STRONG&gt;Given&lt;/STRONG&gt; that I navigate to PCCConsole/Manage/Defenders/Deploy/Defender/Single Defender/Container Defender - App Embedded/Fargate task&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;And&lt;/STRONG&gt; I paste the Fargate Task Definition JSON produced by AWS ECS&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;When&lt;/STRONG&gt; I push the 'Generate protected task' button&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;And&lt;/STRONG&gt; Copy Prisma's generated JSON&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;And&lt;/STRONG&gt; Paste it into the new revision of an existing Task Definition&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Then&lt;/STRONG&gt; I get many error, &lt;EM&gt;'Should only contain 'family', 'containerDefinitions', 'volumes', 'taskRoleArn', 'networkMode', 'requiresCompatibilities', 'cpu', 'memory', 'inferenceAccelerators', 'executionRoleArn', 'pidMode', 'ipcMode', 'proxyConfiguration', 'tags', 'runtimePlatform', 'placementConstraints'.'&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;STRONG&gt;And&lt;/STRONG&gt; I have to eliminate json objects in order for AWS to accept the definition.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;JSON zipped and attached; you can use a diff tool to see what JSON had to be deleted.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Why isn't Prisma's generated JSON acceptable to AWS?&lt;/P&gt;
&lt;P&gt;What am I doing wrong?&lt;/P&gt;
&lt;P&gt;Are the modifications that I made accpetable?&lt;/P&gt;
&lt;P&gt;After making the modifications, is my Task protected?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;BR /&gt;&lt;BR /&gt;Please note you are posting a public message where community members and experts can provide assistance. Sharing private information such as serial numbers or company information is not recommended.</description>
      <pubDate>Wed, 12 Oct 2022 21:27:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/517703#M732</guid>
      <dc:creator>TommyHunt</dc:creator>
      <dc:date>2022-10-12T21:27:12Z</dc:date>
    </item>
    <item>
      <title>Re: PCC/Manage/Defenders/Deploy/Defender/Single Defender/Container Defender - App Embedded/Fargate task generates JSON unacceptable to AWS</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/517785#M734</link>
      <description>&lt;P&gt;Hi Tommy,&lt;/P&gt;
&lt;P&gt;This happens when a task definition is exported / copied from AWS and then pasted into Compute's protected task generation field. If you copy solely the original Fargate task and use that in Compute's protected task generator, and then use the result in a new Fargate task definition, you won't receive those errors.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Thu, 13 Oct 2022 13:51:33 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/517785#M734</guid>
      <dc:creator>CloudEngineer</dc:creator>
      <dc:date>2022-10-13T13:51:33Z</dc:date>
    </item>
    <item>
      <title>Re: PCC/Manage/Defenders/Deploy/Defender/Single Defender/Container Defender - App Embedded/Fargate task generates JSON unacceptable to AWS</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/517855#M741</link>
      <description>&lt;P&gt;Thanks Brandon;&amp;nbsp; choosing that version of a task definition was a poor choice. Given the dynamic nature of task definitions, the task definition is always a template where fields are populated with values and the transformed json is submitted via automation, for example&amp;nbsp;terraform modules or CloudFormationTemplates.&amp;nbsp; Thus the original JSON Task Definition is never seen by the developer, it is neither handled by a developer nor checked into a version-control-system. Bottom-line: unless the developer manually codes it, they can't submit the version of JSON that the API was made to consume.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Oct 2022 18:50:49 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/517855#M741</guid>
      <dc:creator>TommyHunt</dc:creator>
      <dc:date>2022-10-13T18:50:49Z</dc:date>
    </item>
    <item>
      <title>Re: PCC/Manage/Defenders/Deploy/Defender/Single Defender/Container Defender - App Embedded/Fargate task generates JSON unacceptable to AWS</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/517857#M742</link>
      <description>&lt;P&gt;Thanks again, I am grateful for your help.&lt;/P&gt;</description>
      <pubDate>Thu, 13 Oct 2022 18:52:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/517857#M742</guid>
      <dc:creator>TommyHunt</dc:creator>
      <dc:date>2022-10-13T18:52:31Z</dc:date>
    </item>
    <item>
      <title>Re: PCC/Manage/Defenders/Deploy/Defender/Single Defender/Container Defender - App Embedded/Fargate task generates JSON unacceptable to AWS</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/517954#M752</link>
      <description>&lt;P&gt;You're welcome! I'm happy to help. I understand your feedback and I just wanted to inform you that we do have an RFE (Request for Enhancement) process. I believe that you will just need an account in our customer support portal to submit this, The more unique company votes it receives, the more visibility it will receive.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://prismacloud.ideas.aha.io/ideas/new" target="_blank"&gt;https://prismacloud.ideas.aha.io/ideas/new&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;</description>
      <pubDate>Fri, 14 Oct 2022 14:42:13 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/517954#M752</guid>
      <dc:creator>CloudEngineer</dc:creator>
      <dc:date>2022-10-14T14:42:13Z</dc:date>
    </item>
    <item>
      <title>Re: PCC/Manage/Defenders/Deploy/Defender/Single Defender/Container Defender - App Embedded/Fargate task generates JSON unacceptable to AWS</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/519916#M771</link>
      <description>&lt;P&gt;&lt;a href="https://live.paloaltonetworks.com/t5/user/viewprofilepage/user-id/183942"&gt;@CloudEngineer&lt;/a&gt;&amp;nbsp; dude, you were correct the whole time.&amp;nbsp; &lt;SPAN&gt;The Prisma Cloud Compute SecurityHub Alert Provider works perfectly fine.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;I got misinformation from support case &lt;SPAN&gt;02326773&lt;/SPAN&gt;.&amp;nbsp; Here is how I determined that the Registry Scanned CVEs and Compliance vulnerabilities were generating Alerts and propogating them to AWS SecurityHub/Findings Console.&amp;nbsp; I entered this Filter criteria and then I could see the CVE-Alerts.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="TommyHunt_0-1667330936544.png" style="width: 400px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/45063i2BA15E06AE615FAB/image-size/medium/is-moderation-mode/true?v=v2&amp;amp;px=400" role="button" title="TommyHunt_0-1667330936544.png" alt="TommyHunt_0-1667330936544.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I still have NO explanation for those errors that I cited at the beginning of this&lt;/P&gt;</description>
      <pubDate>Tue, 01 Nov 2022 19:29:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/519916#M771</guid>
      <dc:creator>TommyHunt</dc:creator>
      <dc:date>2022-11-01T19:29:14Z</dc:date>
    </item>
    <item>
      <title>Re: PCC/Manage/Defenders/Deploy/Defender/Single Defender/Container Defender - App Embedded/Fargate task generates JSON unacceptable to AWS</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/519919#M772</link>
      <description>&lt;P&gt;please delete, disregard that comment above; it is intended for another conversation.&lt;/P&gt;</description>
      <pubDate>Tue, 01 Nov 2022 19:33:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/pcc-manage-defenders-deploy-defender-single-defender-container/m-p/519919#M772</guid>
      <dc:creator>TommyHunt</dc:creator>
      <dc:date>2022-11-01T19:33:26Z</dc:date>
    </item>
  </channel>
</rss>

