Threat Stack Container Security Monitoring for AWS Fargate Changelog
Release Announcement
v1.1.1
Release date 03/25/2022
Threat Stack enhanced the following features in the Threat Stack Container Security Monitoring for Amazon Web Services (AWS) Fargate 1.1.1 release:
- System Requirements
- The Fargate Agent now supports Graviton2 (ARM) architecture
- Performance Improvements
- If the Agent is disconnected or configuration of the Agent is incomplete, then any unprocessed Network Connection data is handled appropriately
- The Agent successfully reconnects to the Threat Stack Cloud Security Platform (CSP), regardless of the number of times the connection is blocked and unblocked
- Logging
- The Agent logs dropped events at a configurable logging interval when the Agent disconnects from the Threat Stack CSP
- Disconnect and reconnect log messages provide more detailed reasons for the disconnect or reconnect
- The Agent now logs the following:
- attempts by the mounted Sensor to reconnect to the Agent
- socket connections that stop working and start working
Additionally, you can view the new logs by setting the TS_ENABLE_STATS_LOGGING environment variable in the container in which the mounted Sensor is mounted.
Additionally, this release includes assorted minor bug fixes.
Release date 08/18/2021
Threat Stack enhanced the following features in the Threat Stack Container Security Monitoring for Amazon Web Services (AWS) Fargate 1.1.0 release:
- Supported Deployments
- Threat Stack Container Monitoring for AWS Fargate now supports AWS Fargate-based Elastic Kubernetes Service (EKS) deployments
- Mounted Sensor
- Updated mountedSensor orchestration logic for app forkers
- Rules
- Threat Stack managed task definition automatically assigns Threat Stack-managed Fargate ruleset to Threat Stack Hostless Agents
Additionally, this release includes assorted minor bug fixes.
Release date 08/04/2020
Threat Stack introduced Threat Stack Container Security Monitoring for Amazon Web Services (AWS) Fargate. The following features are in this release:
- Configuration through existing Fargate task definitions and containers.
- Real-time monitoring and alerting for:
- SSHD binaries
- Data exfiltration attempts
- Unexpected network connections
- After installing the Agent, you can run various commands for informational and troubleshooting purposes.