add default deny test to ingress-and-egress-blocked #700
ks-check.yaml
on: push
test_ks_misconfigurations
/
kubescape
37s
Annotations
11 errors and 2 warnings
scan_local_list_of_files:
results_xml_format/scan_local_list_of_files.xml#L1
CompletedProcess(args=['/home/runner/work/regolibrary/regolibrary/temp/kubescape', 'scan', '--logger', 'debug', '--format-version', 'v2', 'framework', 'allControls', '/home/runner/work/regolibrary/regolibrary/resources/kubescape/yaml_file/nginx.yaml', '--format', 'json', '--output', '/home/runner/work/regolibrary/regolibrary/temp/results.json', '--server', 'api.armosec.io', '--use-artifacts-from', '/home/runner/work/regolibrary/regolibrary/'], returncode=1)
|
scan_local_glob_files:
results_xml_format/scan_local_glob_files.xml#L1
CompletedProcess(args=['/home/runner/work/regolibrary/regolibrary/temp/kubescape', 'scan', '--logger', 'debug', '--format-version', 'v2', 'framework', 'NSA', '/home/runner/work/regolibrary/regolibrary/resources/kubescape/yaml_file/hipster_shop/*.yaml', '--format', 'json', '--output', '/home/runner/work/regolibrary/regolibrary/temp/results.json', '--server', 'api.armosec.io', '--use-artifacts-from', '/home/runner/work/regolibrary/regolibrary/'], returncode=1)
|
scan_mitre:
results_xml_format/scan_mitre.xml#L1
CompletedProcess(args=['/home/runner/work/regolibrary/regolibrary/temp/kubescape', 'scan', '--logger', 'debug', '--format-version', 'v2', 'framework', 'MITRE', '--format', 'json', '--output', '/home/runner/work/regolibrary/regolibrary/temp/results.json', '--server', 'api.armosec.io', '--use-artifacts-from', '/home/runner/work/regolibrary/regolibrary/'], returncode=1)
|
scan_nsa:
results_xml_format/scan_nsa.xml#L1
CompletedProcess(args=['/home/runner/work/regolibrary/regolibrary/temp/kubescape', 'scan', '--logger', 'debug', '--format-version', 'v2', 'framework', 'NSA', '--format', 'json', '--output', '/home/runner/work/regolibrary/regolibrary/temp/results.json', '--server', 'api.armosec.io', '--use-artifacts-from', '/home/runner/work/regolibrary/regolibrary/'], returncode=1)
|
scan_local_file:
results_xml_format/scan_local_file.xml#L1
CompletedProcess(args=['/home/runner/work/regolibrary/regolibrary/temp/kubescape', 'scan', '--logger', 'debug', '--format-version', 'v2', 'framework', 'NSA', '/home/runner/work/regolibrary/regolibrary/resources/kubescape/yaml_file/nginx.yaml', '--format', 'json', '--output', '/home/runner/work/regolibrary/regolibrary/temp/results.json', '--server', 'api.armosec.io', '--use-artifacts-from', '/home/runner/work/regolibrary/regolibrary/'], returncode=1)
|
scan_with_exceptions:
results_xml_format/scan_with_exceptions.xml#L1
CompletedProcess(args=['/home/runner/work/regolibrary/regolibrary/temp/kubescape', 'scan', '--logger', 'debug', '--format-version', 'v2', 'framework', 'MITRE', '--format', 'json', '--output', '/home/runner/work/regolibrary/regolibrary/temp/results.json', '--exceptions', '/home/runner/work/regolibrary/regolibrary/resources/kubescape/exceptions/kube-ns.json', '--server', 'api.armosec.io', '--use-artifacts-from', '/home/runner/work/regolibrary/regolibrary/'], returncode=1)
|
scan_repository:
results_xml_format/scan_repository.xml#L1
CompletedProcess(args=['/home/runner/work/regolibrary/regolibrary/temp/kubescape', 'scan', '--logger', 'debug', '--format-version', 'v2', 'framework', 'MITRE', 'https://github.com/armosec/kubescape', '--format', 'json', '--output', '/home/runner/work/regolibrary/regolibrary/temp/results.json', '--server', 'api.armosec.io', '--use-artifacts-from', '/home/runner/work/regolibrary/regolibrary/'], returncode=1)
|
scan_compliance_score:
results_xml_format/scan_compliance_score.xml#L1
CompletedProcess(args=['/home/runner/work/regolibrary/regolibrary/temp/kubescape', 'scan', '--logger', 'debug', '--format-version', 'v2', 'framework', 'nsa,mitre,cis-v1.23-t1.0.1', '--format', 'json', '--output', '/home/runner/work/regolibrary/regolibrary/temp/results.json', '--submit', '--account', '3f4a257e-11ea-4cee-8bc0-ca8daa65a833', '--server', 'api.armosec.io', '--use-artifacts-from', '/home/runner/work/regolibrary/regolibrary/'], returncode=1)
|
host_scanner:
results_xml_format/host_scanner.xml#L1
CompletedProcess(args=['/home/runner/work/regolibrary/regolibrary/temp/kubescape', 'scan', '--logger', 'debug', '--format-version', 'v2', 'control', 'C-0069,C-0070', '--format', 'json', '--output', '/home/runner/work/regolibrary/regolibrary/temp/results.json', '--server', 'api.armosec.io', '--use-artifacts-from', '/home/runner/work/regolibrary/regolibrary/', '--enable-host-scan'], returncode=1)
|
scan_mitre_and_submit_to_backend:
results_xml_format/scan_mitre_and_submit_to_backend.xml#L1
CompletedProcess(args=['/home/runner/work/regolibrary/regolibrary/temp/kubescape', 'scan', '--logger', 'debug', '--format-version', 'v2', 'framework', 'MITRE', '--format', 'json', '--output', '/home/runner/work/regolibrary/regolibrary/temp/results.json', '--submit', '--account', '3f4a257e-11ea-4cee-8bc0-ca8daa65a833', '--server', 'api.armosec.io', '--use-artifacts-from', '/home/runner/work/regolibrary/regolibrary/'], returncode=1)
|
scan_nsa_and_submit_to_backend:
results_xml_format/scan_nsa_and_submit_to_backend.xml#L1
CompletedProcess(args=['/home/runner/work/regolibrary/regolibrary/temp/kubescape', 'scan', '--logger', 'debug', '--format-version', 'v2', 'framework', 'NSA', '--format', 'json', '--output', '/home/runner/work/regolibrary/regolibrary/temp/results.json', '--submit', '--account', 'c54ba873-f386-4412-ad27-155a77faa94a', '--server', 'api.armosec.io', '--use-artifacts-from', '/home/runner/work/regolibrary/regolibrary/'], returncode=1)
|
test_ks_misconfigurations / kubescape
The following actions use a deprecated Node.js version and will be forced to run on node20: actions/checkout@v3, github/codeql-action/upload-sarif@v2. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|
test_ks_misconfigurations / kubescape
CodeQL Action v2 will be deprecated on December 5th, 2024. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2024-01-12-code-scanning-deprecation-of-codeql-action-v2/
|