The Cloudvisory Security Platform (CSP) supports cloud-native integration with OpenStack APIs for Cloud Services such as:
- OpenStack Keystone
- OpenStack Neutron
- OpenStack Nova
In addition to API-based security monitoring and management for resident OpenStack Projects and resources (e.g. Instances, network flows, Security Groups, etc), CSP establishes Compliance Assurance for underlying OpenStack infrastructure(s) by running and tracking SSH-based Compliance Checks that implement the OpenStack Security Checklist for OpenStack services such as:
- OpenStack Cinder
- OpenStack Horizon
- OpenStack Keystone
- OpenStack Manila
- OpenStack Neutron
- OpenStack Nova
Multiple OpenStack accounts, of any size and "scope", may be configured as OpenStack Provider Accounts in CSP. For each configured OpenStack Provider Account – CSP continuously discovers and processes new and updated assets, metadata, security controls & security events for all in-scope Cloud Services, Regions, and Projects. By processing updates according to policies configured in CSP – and through the same cloud-native API integrations – events trigger governance actions such as compliance remediation and policy enforcement. In this way, CSP provides Visibility, Compliance & Governance for OpenStack assets, metadata, security controls & security events such as:
- OpenStack Hypervisors
- OpenStack Instances
- OpenStack Instance Netflow Data
- OpenStack Metadata (tags)
- OpenStack Projects (i.e. Tenants)
- OpenStack Regions
- OpenStack Roles
- OpenStack Security Groups
- OpenStack Users