We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
The ref-template.json (modified from test/negative2.json) to return negative for the ECS Cluster Not Encrypted At Rest query.
ECS Cluster Not Encrypted At Rest
Query returns a positive for ECS Cluster Not Encrypted At Rest, even with the correct EFS volume configuration, due to this section of the above code:
"TaskDefinition": { "Ref": "taskdefinition" },
It return negative when using the following syntax to reference the task definition:
"TaskDefinition": "taskdefinition",
We are using AWS CDK to generate our template and it always generates a Ref block to refer to a resource.
Ref
6c131358-c54d-419b-9dd6-1f7dd41d180c
docker run -t -v $PWD/test:/path checkmarx/kics:latest scan -p /path/ref-template.json -o "/path/" --log-level "DEBUG" -i "6c131358-c54d-419b-9dd6-1f7dd41d180c" -v
debug-log.txt
The text was updated successfully, but these errors were encountered:
Hi @Cerisabeth Thanks for your input!
We asked our internal AppSec team to provide you feedback on this. We will keep you updated. (APPSEC-2916)
Sorry, something went wrong.
No branches or pull requests
Expected Behavior
The ref-template.json (modified from test/negative2.json) to return negative for the
ECS Cluster Not Encrypted At Rest
query.Actual Behavior
Query returns a positive for
ECS Cluster Not Encrypted At Rest
, even with the correct EFS volume configuration, due to this section of the above code:It return negative when using the following syntax to reference the task definition:
We are using AWS CDK to generate our template and it always generates a
Ref
block to refer to a resource.Steps to Reproduce the Problem
ECS Cluster Not Encrypted At Rest
query (id:6c131358-c54d-419b-9dd6-1f7dd41d180c
)debug-log.txt
Specifications
The text was updated successfully, but these errors were encountered: