-
Notifications
You must be signed in to change notification settings - Fork 621
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update cfngoat.yaml #5
base: master
Are you sure you want to change the base?
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Bridgecrew has found 7 infrastructure configuration errors in this PR ⬇️
@@ -203,6 +203,15 @@ Resources: | |||
- Key: Name | |||
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs" | |||
|
|||
MyBucket: |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Error Description: Ensure the S3 bucket has access logging enabled
Category: Storage | Severity: LOW
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217
@@ -203,6 +203,15 @@ Resources: | |||
- Key: Name | |||
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs" | |||
|
|||
MyBucket: |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Error Description: Ensure S3 bucket has block public ACLS enabled
Category: Storage | Severity: MEDIUM
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217
@@ -203,6 +203,15 @@ Resources: | |||
- Key: Name | |||
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs" | |||
|
|||
MyBucket: |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Error Description: Ensure S3 bucket has block public policy enabled
Category: Storage | Severity: MEDIUM
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217
@@ -203,6 +203,15 @@ Resources: | |||
- Key: Name | |||
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs" | |||
|
|||
MyBucket: |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Error Description: Ensure all data stored in the S3 bucket is securely encrypted at rest
Category: Storage | Severity: HIGH
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217
@@ -203,6 +203,15 @@ Resources: | |||
- Key: Name | |||
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs" | |||
|
|||
MyBucket: |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Error Description: Ensure S3 bucket has ignore public ACLs enabled
Category: Storage | Severity: MEDIUM
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217
@@ -203,6 +203,15 @@ Resources: | |||
- Key: Name | |||
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs" | |||
|
|||
MyBucket: |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Error Description: Ensure S3 bucket has 'restrict_public_bucket' enabled
Category: Storage | Severity: MEDIUM
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217
@@ -203,6 +203,15 @@ Resources: | |||
- Key: Name | |||
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs" | |||
|
|||
MyBucket: |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Error Description: Ensure all data stored in the S3 bucket have versioning enabled
Category: Storage | Severity: HIGH
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217
No description provided.