Skip to content

This guide will help our customers install the Lacework agent in an AWS ECS Fargate environment.

Notifications You must be signed in to change notification settings

lacework-community/fargate-ecs-guide

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

26 Commits
 
 
 
 
 
 

Repository files navigation

Lacework Agent + AWS Fargate Guide

Table of contents

Change log

Date Author Comment
January 2022 Allie Fick
  • Revised to align with Lacework's best practice guide template.
  • Completed editorial review.
September 2021 Diana Esteves
  • We're embracing Docker's multistage build feature when baking the agent.
  • Updated best practices to include 1 agent token:1 service recommendation
  • Updated one-liner and corresponding entrypoint to start the agent service.
  • Updated sidecar reqs.
  • We now have several example Dockerfiles and helper scripts. 🤩 See /examples.
August 2021 Diana Esteves Initial public release for this guide. Thank you to all the amazing Lacers who provided valuable feedback!

Overview

Two options are available to install the Lacework agent in AWS Fargate. We highly recommend the baking solution because it pre-installs and configures the agent directly in the Docker image.

Prerequisites

Best practices

  • Install the agent directly into your existing application Dockerfile(s):
    • Use multistage builds.
    • When building the Docker image, place the Lacework agent token in the container definition as an environment variable to securely pass it in.
  • Allocate 512 MB vCPU and 1 GB RAM for the Lacework agent.
  • Use one Lacework agent token per container (TaskDefinition Service).

Installation steps

Two primary options to install the Lacework Agent in AWS Fargate are available. The recommended method is to bake the Lacework agent directly in the Docker image. We encourage using multistage builds; however, a version without multistage builds is also documented below:

Navigate to the corresponding configuration below to view the installation steps.

Provide feedback

To provide feedback on this guide, submit a pull request or email diana@lacework.com.

About

This guide will help our customers install the Lacework agent in an AWS ECS Fargate environment.

Topics

Resources

Stars

Watchers

Forks

Contributors 2

  •  
  •