Frequently Asked Questions
How does Fugue access customer cloud accounts?
To scan AWS accounts, Fugue uses a tightly-scoped read-only IAM role to execute calls against AWS APIs. Fugue can auto-generate this IAM role for users. For Azure subscriptions, Fugue utilizes a Reader role. For Google projects, Fugue impersonates a properly permissioned service account and generates short-lived credentials. Optional auto-remediation with Fugue requires additional write privileges for the AWS IAM role.
Where can I find more information on Fugue features?
How does Fugue define a cloud resource?
A cloud resource is any configuration item that is tracked, analyzed, and enforced from a policy or drift perspective. Examples include AWS EC2 instances, Azure virtual machines, and Google Cloud Storage buckets. A full list of resource types is here.
How does Fugue assess cloud resources for billing purposes (Fugue Enterprise)?
Fugue assesses cloud resources for billing purposes for Fugue Enterprise by calculating a resource under management (RUM) metric that is the median of trailing 90-day cloud resource counts, sampled daily.
How does Fugue define an environment?
A Fugue environment is a user-defined collection of cloud resources within a given AWS account, Azure subscription, or Google Cloud project. An AWS environment can be scoped to specific regions or set of resource types. An Azure environment can be scoped to a set of resource groups. A Google Cloud environment is scoped to a project. An AWS account, Azure subscription, or Google Cloud project may have one or more Fugue environments associated with it. For instance, you may want one environment that runs a daily compliance check for all of your cloud resources, and another that's focused on detecting drift and misconfiguration for a smaller number of security-critical resources.
Is Fugue Developer only for individuals, or can organizations and companies be on the plan?
Individual engineers are welcome to use Fugue Developer for free to manage the security of cloud infrastructure for their employer or their own projects. Please note that a Fugue Developer account only supports one user. Fugue Enterprise may be more appropriate for multiple users or organizations that need visibility and security for at scale cloud environments.
How does Fugue bill for Fugue Enterprise?
Fugue is billed annually at the start of each subscription term.
Please reach out to email@example.com if you have additional questions.