-
Notifications
You must be signed in to change notification settings - Fork 2
Update main.tf #164
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update main.tf #164
Conversation
Wiz Scan Summary
To detect these findings earlier in the dev lifecycle, try using Wiz Code VS Code Extension. |
| provider "aws" { | ||
| region = "us-east-2" | ||
| access_key = "AKIAJSIE37KKMHXI3BJQ" | ||
| secret_key = "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" |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Cloud Key
More Details
| Attribute | Value |
|---|---|
| SHA256 | c49f9f799d4ea0e754b1830eda01e8e71d9814412c7cfc0d3744e43ecac513da |
| Key Type | AWS Secret Access Key |
| Long Term Expiry | Yes |
| Provider ID | AKIAJSIE37KKMHXI3BJQ |
Rule ID: SECRET-SYSTEM-1
To ignore this finding as an exception, reply to this conversation with #wiz_ignore reason
If you'd like to ignore this finding in all future scans, add an exception in the .wiz file (learn more) or create an Ignore Rule (learn more).
| secret_key = "abC2D0EFGh12IjkLMN3/opQ+Stuv3123u56wxyz7" | ||
| } | ||
|
|
||
| resource "aws_s3_bucket" "wiz" { |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
S3 Bucket versioning should be enabled
on resource aws_s3_bucket[wiz]
More Details
This rule checks whether the S3 Bucket versioning is enabled. This rule fails if the `Status` field is not set to `Enabled`. S3 Versioning allows keeping multiple versions of an object in one bucket. Versioning-enabled buckets can help you recover objects from accidental deletion or overwrites.
Expected
S3 Bucket Versioning is disabled
Found
S3 Bucket Versioning should be enabled
Security Frameworks: wf-id-1, 86166614-75c0-44b3-a281-836559f472e7, 55d4ef51-0d2f-4154-9633-3db1113f014d, b71b830a-3b9b-4b86-ba71-fd58b14ba0e2, wf-id-16, wf-id-120, b24f7bc6-6360-497e-9846-655bbb42c090, 8fdac460-5094-4444-b759-7d1df59667d5, c3245b7c-92e2-4fcc-8839-4cc1ce413dfb, wf-id-13, ba636dbf-7c6c-416e-ab0f-3616e385967c, fecbcd2d-dbb9-49bd-9721-48e6e2501b5e, 6e3958ac-d01d-4c4e-bd74-f678c9e02300, a41e357f-c453-4889-90ba-ecdb00ca5c60, d5e6d16e-b452-4414-8d77-f719038c9bb5, 7735e098-647d-4d57-91b5-bc680fb69ab0, 95c60493-ddc3-4c15-8985-f8c91872ae63, e64ac551-b69f-434f-8e20-376d1d910b80, wf-id-39, bd209138-cbad-4b83-bbd1-73d96f86e7ea, a4c9b72b-0a8b-4002-ac85-fc3f9cb90767, 434ea60a-efc4-45be-9c69-537779a3558c, 72808552-f2a6-4149-b54d-f89ddaf5f77a, ff9bf4c6-7acc-4933-8996-adda2155d55a, wf-id-105, d1270103-032d-4b65-ac9c-906aadde7d5a, 1a22b5e3-8c61-4ee5-aaf1-f906e76727eb, 0dcd6f9f-e26e-427e-a75b-0acaff9c5b22, bb831fb0-03f0-4516-b02d-bb82163da994, 10b16c00-1894-45d2-9c57-d45a9ebeb93a, 512b082b-43f5-4d82-ae38-bbc8da721b0c, 1f612f11-7273-4aa8-8214-133eea182b1a, 7ecd236d-f71b-4710-94a8-56cf17acd1dd, wf-id-101, 92843eb0-66e5-4fbf-84f4-826075521ef6, 6a4e92aa-f00c-4426-9add-f35959951b95, 32dbe93b-7840-476c-ab4e-d20d0110ef63, wf-id-90, bbfd8a1d-9bed-4976-aa60-3e9b350fded2, wf-id-3, wf-id-48, d917ea1a-1af6-480c-b608-27b4c9bfe474, 92e9ee2d-1ab3-4583-a2a8-f00040e19027, 8046e2b2-8823-4e94-a082-39dc9aa415e1, wf-id-87, 1814393d-1b7c-4f9f-aad7-bd4690dff69f, wf-id-5, b2141187-0cbd-41c5-b392-6e3584a51a12, 8d280612-ce6e-4bb1-999a-07a7fa4f1363, 03f9bd9a-f9e0-4511-9a4d-137939ee0e7a, 8e4743ae-4381-434b-95ad-b68f56779d04, 3e41cf6d-e231-43ff-bc12-1760a95c9955, 695a722c-93dc-4d96-a109-1ea59e77b77e, 1a94a20c-d020-4fef-bfc8-313183265936, 13f2c304-813f-4b94-8a50-59887771f872, 6930b9dc-00d1-45ac-8571-6225820d6f5c, 9d2f9c9f-10c0-4157-bbd5-eefeafb50f6b, 92b4316a-191d-45f6-a841-106e1c9af9e3, b6482082-27a2-4d2c-a0a2-1756c384b3e1
Rule ID: f4ac6273-757e-4297-990a-3a38b6c5ef3e
To ignore this finding as an exception, reply to this conversation with #wiz_ignore reason
If you'd like to ignore this finding in all future scans, add an exception in the .wiz file (learn more) or create an Ignore Rule (learn more).
No description provided.