|
192 | 192 | "CKV_AWS_115" |
193 | 193 | ] |
194 | 194 | }, |
| 195 | + { |
| 196 | + "resource": "AWS::Lambda::Function.CustomAuthorizerFunctiondevB38B5CCB", |
| 197 | + "check_ids": [ |
| 198 | + "CKV_AWS_115", |
| 199 | + "CKV_AWS_116" |
| 200 | + ] |
| 201 | + }, |
195 | 202 | { |
196 | 203 | "resource": "AWS::Lambda::Function.ElasticSearchProxyHandlerDBDE7574", |
197 | 204 | "check_ids": [ |
|
210 | 217 | "CKV_AWS_158" |
211 | 218 | ] |
212 | 219 | }, |
| 220 | + { |
| 221 | + "resource": "AWS::Logs::LogGroup.customauthorizerloggroup8F3B5B9D", |
| 222 | + "check_ids": [ |
| 223 | + "CKV_AWS_158" |
| 224 | + ] |
| 225 | + }, |
213 | 226 | { |
214 | 227 | "resource": "AWS::Logs::LogGroup.dataalldevapigateway2625FE76", |
215 | 228 | "check_ids": [ |
|
363 | 376 | ] |
364 | 377 | }, |
365 | 378 | { |
366 | | - "resource": "AWS::S3::Bucket.dataalldevfrontend64065639", |
367 | | - "check_ids": [ |
368 | | - "CKV_AWS_18" |
369 | | - ] |
370 | | - }, |
371 | | - { |
372 | | - "resource": "AWS::S3::Bucket.dataalldevlogging0F6723EE", |
373 | | - "check_ids": [ |
374 | | - "CKV_AWS_18" |
375 | | - ] |
376 | | - }, |
377 | | - { |
378 | | - "resource": "AWS::S3::Bucket.dataalldevuserguide5964DC13", |
| 379 | + "resource": "AWS::S3::Bucket.dataalldevcloudfrontaccesslogsCAF85B96", |
379 | 380 | "check_ids": [ |
380 | 381 | "CKV_AWS_18" |
381 | 382 | ] |
|
404 | 405 | ] |
405 | 406 | }, |
406 | 407 | { |
407 | | - "file": "/cdk.out/asset.3045cb6b4340be1e173df6dcf6248d565aa849ceda3e2cf2c2f221ccee4bc1d6/pivotRole.yaml", |
| 408 | + "file": "/cdk.out/asset.05d71d8b69cd4483d3c9db9120b556b718c72f349debbb79d461c74c4964b350/pivotRole.yaml", |
408 | 409 | "findings": [ |
409 | 410 | { |
410 | 411 | "resource": "AWS::IAM::ManagedPolicy.PivotRolePolicy0", |
|
439 | 440 | ] |
440 | 441 | }, |
441 | 442 | { |
442 | | - "resource": "AWS::S3::Bucket.pipelineartifactsbucketE44F7DE9", |
443 | | - "check_ids": [ |
444 | | - "CKV_AWS_18" |
445 | | - ] |
446 | | - }, |
447 | | - { |
448 | | - "resource": "AWS::S3::Bucket.sourcecodebucket464EEFA3", |
| 443 | + "resource": "AWS::S3::Bucket.dataallaccesslogsEDA9BC4F", |
449 | 444 | "check_ids": [ |
450 | 445 | "CKV_AWS_18" |
451 | 446 | ] |
|
477 | 472 | { |
478 | 473 | "file": "/checkov_environment_synth.json", |
479 | 474 | "findings": [ |
480 | | - { |
481 | | - "resource": "AWS::IAM::ManagedPolicy.dataallanothergroup111111servicespolicy19AC37181", |
482 | | - "check_ids": [ |
483 | | - "CKV_AWS_111" |
484 | | - ] |
485 | | - }, |
486 | 475 | { |
487 | 476 | "resource": "AWS::IAM::ManagedPolicy.dataallanothergroup111111servicespolicy2E85AF510", |
488 | 477 | "check_ids": [ |
|
495 | 484 | "CKV_AWS_111" |
496 | 485 | ] |
497 | 486 | }, |
498 | | - { |
499 | | - "resource": "AWS::IAM::ManagedPolicy.dataallanothergroup111111servicespolicy5A19E75CA", |
500 | | - "check_ids": [ |
501 | | - "CKV_AWS_109" |
502 | | - ] |
503 | | - }, |
504 | | - { |
505 | | - "resource": "AWS::IAM::ManagedPolicy.dataallanothergroup111111servicespolicyCC720210", |
506 | | - "check_ids": [ |
507 | | - "CKV_AWS_109" |
508 | | - ] |
509 | | - }, |
510 | | - { |
511 | | - "resource": "AWS::IAM::ManagedPolicy.dataalltestadmins111111servicespolicy1A0C96958", |
512 | | - "check_ids": [ |
513 | | - "CKV_AWS_111" |
514 | | - ] |
515 | | - }, |
516 | 487 | { |
517 | 488 | "resource": "AWS::IAM::ManagedPolicy.dataalltestadmins111111servicespolicy2B12D381A", |
518 | 489 | "check_ids": [ |
|
525 | 496 | "CKV_AWS_111" |
526 | 497 | ] |
527 | 498 | }, |
528 | | - { |
529 | | - "resource": "AWS::IAM::ManagedPolicy.dataalltestadmins111111servicespolicy3E3CBA9E", |
530 | | - "check_ids": [ |
531 | | - "CKV_AWS_109" |
532 | | - ] |
533 | | - }, |
534 | | - { |
535 | | - "resource": "AWS::IAM::ManagedPolicy.dataalltestadmins111111servicespolicy56D7DC525", |
536 | | - "check_ids": [ |
537 | | - "CKV_AWS_109" |
538 | | - ] |
539 | | - }, |
540 | 499 | { |
541 | 500 | "resource": "AWS::Lambda::Function.CustomCDKBucketDeployment8693BB64968944B69AAFB0CC9EB8756C81C01536", |
542 | 501 | "check_ids": [ |
|
550 | 509 | "resource": "AWS::Lambda::Function.GlueDatabaseLFCustomResourceHandler7FAF0F82", |
551 | 510 | "check_ids": [ |
552 | 511 | "CKV_AWS_115", |
553 | | - "CKV_AWS_117", |
554 | | - "CKV_AWS_173" |
| 512 | + "CKV_AWS_117" |
555 | 513 | ] |
556 | 514 | }, |
557 | 515 | { |
558 | 516 | "resource": "AWS::Lambda::Function.LakeformationDefaultSettingsHandler2CBEDB06", |
559 | 517 | "check_ids": [ |
560 | 518 | "CKV_AWS_115", |
561 | | - "CKV_AWS_117", |
562 | | - "CKV_AWS_173" |
| 519 | + "CKV_AWS_117" |
563 | 520 | ] |
564 | 521 | }, |
565 | 522 | { |
566 | 523 | "resource": "AWS::Lambda::Function.dataallGlueDbCustomResourceProviderframeworkonEventF8347BA7", |
567 | 524 | "check_ids": [ |
568 | 525 | "CKV_AWS_115", |
569 | 526 | "CKV_AWS_116", |
570 | | - "CKV_AWS_117", |
571 | | - "CKV_AWS_173" |
| 527 | + "CKV_AWS_117" |
572 | 528 | ] |
573 | 529 | }, |
574 | 530 | { |
575 | 531 | "resource": "AWS::Lambda::Function.dataallLakeformationDefaultSettingsProviderframeworkonEventBB660E32", |
576 | 532 | "check_ids": [ |
577 | 533 | "CKV_AWS_115", |
578 | 534 | "CKV_AWS_116", |
579 | | - "CKV_AWS_117", |
580 | | - "CKV_AWS_173" |
| 535 | + "CKV_AWS_117" |
581 | 536 | ] |
582 | 537 | }, |
583 | 538 | { |
584 | | - "resource": "AWS::S3::Bucket.EnvironmentDefaultBucket78C3A8B0", |
| 539 | + "resource": "AWS::CloudTrail::Trail.S3CloudTrail9B4C955D", |
| 540 | + "check_ids": [ |
| 541 | + "CKV_AWS_35" |
| 542 | + ] |
| 543 | + }, |
| 544 | + { |
| 545 | + "resource": "AWS::S3::Bucket.EnvironmentDefaultLogBucket7F0EFAB3", |
585 | 546 | "check_ids": [ |
586 | 547 | "CKV_AWS_18" |
587 | 548 | ] |
|
640 | 601 | } |
641 | 602 | ] |
642 | 603 | }, |
| 604 | + { |
| 605 | + "file": "/checkov_pipeline_synth.json", |
| 606 | + "findings": [ |
| 607 | + { |
| 608 | + "resource": "AWS::IAM::Role.PipelineRoleDCFDBB91", |
| 609 | + "check_ids": [ |
| 610 | + "CKV_AWS_107", |
| 611 | + "CKV_AWS_108", |
| 612 | + "CKV_AWS_111" |
| 613 | + ] |
| 614 | + }, |
| 615 | + { |
| 616 | + "resource": "AWS::S3::Bucket.thistableartifactsbucketDB1C8C64", |
| 617 | + "check_ids": [ |
| 618 | + "CKV_AWS_18" |
| 619 | + ] |
| 620 | + } |
| 621 | + ] |
| 622 | + }, |
643 | 623 | { |
644 | 624 | "file": "/frontend/docker/prod/Dockerfile", |
645 | 625 | "findings": [ |
|
0 commit comments