New Cloud Guard Features Are Available

New OCI Configuration Detector enhancements are now available in Cloud Guard.

New OCI Configuration Detector rules

  • In addition to "Password is too old" and "API key is too old," use two new rules to detect aging IAM credentials - see OCI Configuration Detector Rules:
    - IAM Auth Token is too old
    - IAM Customer Secret Key is too old

OCI Configuration Detector Enhancements

  • Flexibly specify required tags in the "Instance is running without required Tags" rule. OCI Configuration Detector Rules.
  • Use CIDR-based conditions to include or exclude resources in the "Instance has a public IP address" rule. This enhancement lets you cover use cases where specific OCIDs are not known, such as an automated process that creates resources within an OCID range. See OCI Configuration Detector Rules.