Skip to main content

Menu

LEVEL 0
0/5 XP
HomeAboutTopicsPricingMy VaultStatsPractice TestsCertifications

Categories

🎓 Certifications
🤖 Artificial Intelligence
☁️ Cloud and Infrastructure
💾 Data and Databases
💼 Professional Skills
🎯 Programming and Development
🔒 Security and Networking
📚 Specialized Topics
CheatGrid
HomeAboutTopicsPricingMy VaultStatsPractice TestsCertifications
LVLEVEL 0
0/5 XP
GitHub
© 2026 CheatGrid™. All rights reserved.
Privacy PolicyTerms of UseAboutContact

Configuration Drift Cheat Sheet

Configuration Drift Cheat Sheet

Back to DevOps
Updated 2026-05-28
Next Topic: Configuration Management Cheat Sheet

Configuration drift occurs when infrastructure deviates from its intended state over time due to manual changes, automated updates, or conflicting tooling. Understanding and controlling drift is fundamental to reliable, secure, and compliant infrastructure at scale — because leaving drift unaddressed silently compounds into security vulnerabilities, compliance failures, and operational instability that becomes exponentially harder to resolve the longer it accumulates.

What This Cheat Sheet Covers

This topic spans 21 focused tables and 175 indexed concepts. Below is a complete table-by-table outline of this topic, spanning foundational concepts through advanced details.

Table 1: Core Concepts and DefinitionsTable 2: Drift Detection MethodsTable 3: Cloud Platform Detection - AWSTable 4: Cloud Platform Detection - Azure and GCPTable 5: SaaS Configuration DriftTable 6: IaC Drift Detection - Terraform and OpenTofuTable 7: IaC Drift Detection - CloudFormation and PulumiTable 8: Kubernetes Drift Detection and GitOpsTable 9: Configuration Management Tools - Drift DetectionTable 10: Third-Party Drift Detection PlatformsTable 11: Drift Remediation StrategiesTable 12: Drift Prevention Best PracticesTable 13: Continuous Monitoring and SchedulingTable 14: Policy-Based Enforcement and GuardrailsTable 15: Audit Trails and Compliance LoggingTable 16: Dashboards, Visualization, and ReportingTable 17: Root Cause Analysis and InvestigationTable 18: Reconciliation Loops and Control PatternsTable 19: Network Configuration DriftTable 20: CMDB and Change Management IntegrationTable 21: Security and Reliability Impact

Table 1: Core Concepts and Definitions

The vocabulary of configuration drift spans IaC, GitOps, and ITSM disciplines; getting the terminology right is the prerequisite for effective tooling and process decisions. Drift is not always a mistake — understanding the distinction between intentional and unintentional drift is critical before designing detection and remediation strategies.

ConceptExampleDescription
Configuration Drift
Server firewall rules diverge from documented baseline over weeks
Gradual deviation of a system's active configuration from its intended, approved baseline state — the root problem all detection and remediation practices address
Drift Detection
Comparing live cloud resources to IaC templates on a schedule
Process of identifying discrepancies between actual infrastructure state and desired state defined in IaC or a configuration baseline
Configuration Baseline
Known security-hardened server configuration stored in CMDB
Reference configuration representing the approved state, used as the comparison point for all drift detection operations
Drift Remediation
Running terraform apply to restore drifted S3 bucket policy
Process of correcting a drifted configuration to restore the intended state, either automatically or through an approval workflow
State File
terraform.tfstate tracking all AWS resource attributes
Record of infrastructure's known state used by IaC tools to compare against live resources and plan corrective changes
Desired State Configuration
Configuration WebServer { ... } PowerShell DSC block
Declarative approach to infrastructure where the intended state is declared as code and tooling continuously enforces it

More in DevOps

  • CircleCI Cheat Sheet
  • Configuration Management Cheat Sheet
  • AI-Powered DevOps Copilots and Agents Cheat Sheet
  • Datadog Observability Platform Cheat Sheet
  • Immutable Infrastructure Cheat Sheet
  • Pulumi Programmatic IaC Cheat Sheet
View all 49 topics in DevOps