Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Dev Version : Stable #182

Merged
merged 1,091 commits into from
Dec 21, 2023

Enhance summary stats statement

21bfafc
Select commit
Loading
Failed to load commit list.
Merged

Dev Version : Stable #182

Enhance summary stats statement
21bfafc
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / checkov failed Dec 21, 2023 in 3s

26 new alerts including 19 errors

New alerts in code changed by this pull request

  • 19 errors
  • 7 warnings

See annotations below for details.

View all branch alerts.

Annotations

Check failure on line 236 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure that Network Interfaces don't use public IPs Error

Ensure that Network Interfaces don't use public IPs

Check warning on line 253 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure that managed disks use a specific set of disk encryption sets for the customer-managed key encryption Warning

Ensure that managed disks use a specific set of disk encryption sets for the customer-managed key encryption

Check warning on line 371 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure that PostgreSQL Flexible server enables geo-redundant backups Warning

Ensure that PostgreSQL Flexible server enables geo-redundant backups

Check warning on line 416 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure that Azure Cache for Redis disables public network access Warning

Ensure that Azure Cache for Redis disables public network access

Check failure on line 193 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure private endpoint is configured to key vault Error

Ensure private endpoint is configured to key vault

Check warning on line 193 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure that key vault enables purge protection Warning

Ensure that key vault enables purge protection

Check warning on line 193 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure the key vault is recoverable Warning

Ensure the key vault is recoverable

Check warning on line 208 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure that the expiration date is set on all secrets Warning

Ensure that the expiration date is set on all secrets

Check warning on line 305 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure VM agent is installed Warning

Ensure VM agent is installed

Check failure on line 193 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure that key vault allows firewall rules settings Error

Ensure that key vault allows firewall rules settings

Check failure on line 46 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure that Storage accounts disallow public access Error

Ensure that Storage accounts disallow public access

Check failure on line 46 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure that Storage blobs restrict public access Error

Ensure that Storage blobs restrict public access

Check failure on line 46 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure that Storage Accounts use replication Error

Ensure that Storage Accounts use replication

Check failure on line 46 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure Storage Account is using the latest version of TLS encryption Error

Ensure Storage Account is using the latest version of TLS encryption

Check failure on line 46 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure Storage logging is enabled for Queue service for read, write and delete requests Error

Ensure Storage logging is enabled for Queue service for read, write and delete requests

Check failure on line 46 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure storage for critical data are encrypted with Customer Managed Key Error

Ensure storage for critical data are encrypted with Customer Managed Key

Check failure on line 46 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure storage account is configured with private endpoint Error

Ensure storage account is configured with private endpoint

Check failure on line 113 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure VNET subnet is configured with a Network Security Group (NSG) Error

Ensure VNET subnet is configured with a Network Security Group (NSG)

Check failure on line 65 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure VNET subnet is configured with a Network Security Group (NSG) Error

Ensure VNET subnet is configured with a Network Security Group (NSG)

Check failure on line 46 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure soft-delete is enabled on Azure storage account Error

Ensure soft-delete is enabled on Azure storage account

Check failure on line 89 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure VNET subnet is configured with a Network Security Group (NSG) Error

Ensure VNET subnet is configured with a Network Security Group (NSG)

Check failure on line 90 in infra/production/container.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure Container Instance is configured with managed identity Error

Ensure Container Instance is configured with managed identity

Check failure on line 90 in infra/production/container.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure that Azure container environment variables are configured with secure values only Error

Ensure that Azure container environment variables are configured with secure values only

Check failure on line 416 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Standard Replication should be enabled Error

Standard Replication should be enabled

Check failure on line 46 in infra/production/main.tf

See this annotation in the file changed.

Code scanning / checkov

Ensure storage account is not configured with Shared Key authorization Error

Ensure storage account is not configured with Shared Key authorization