Creating a Custom Policy Pack
Pulumi CrossGuard uses policy-as-code to enforce best practices, compliance, and security requirements across your infrastructure. A policy pack is a collection of policies that can be versioned and reused across projects.
In this tutorial, you will create a custom policy pack that enforces specific policies for your AWS resources, such as enabling S3 bucket versioning, restricting EC2 instance types, and requiring resource tags.
- How to define policies using Python and TypeScript
- How to group policies into a policy pack
- How to deploy and enforce the policy pack in your Pulumi organization
- How to define policies involving multiple resources
- A Pulumi Cloud account and an access token
- The Pulumi CLI
- Install Node.js or Python
- Configure your AWS Credentials
- Familiarity with infrastructure-as-code and Pulumi