Skip to content

Comments

Update cfngoat.yaml#5

Open
mikeurbanski1 wants to merge 1 commit intomasterfrom
mikeurbanski1-patch-1
Open

Update cfngoat.yaml#5
mikeurbanski1 wants to merge 1 commit intomasterfrom
mikeurbanski1-patch-1

Conversation

@mikeurbanski1
Copy link
Contributor

No description provided.

Copy link

@bridgecrew bridgecrew bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Bridgecrew has found 7 infrastructure configuration errors in this PR ⬇️

- Key: Name
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs"

MyBucket:
Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Error Description: Ensure the S3 bucket has access logging enabled
Category: Storage | Severity: LOW
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217

- Key: Name
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs"

MyBucket:
Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Error Description: Ensure S3 bucket has block public ACLS enabled
Category: Storage | Severity: MEDIUM
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217

- Key: Name
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs"

MyBucket:
Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Error Description: Ensure S3 bucket has block public policy enabled
Category: Storage | Severity: MEDIUM
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217

- Key: Name
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs"

MyBucket:
Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Error Description: Ensure all data stored in the S3 bucket is securely encrypted at rest
Category: Storage | Severity: HIGH
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217

- Key: Name
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs"

MyBucket:
Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Error Description: Ensure S3 bucket has ignore public ACLs enabled
Category: Storage | Severity: MEDIUM
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217

- Key: Name
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs"

MyBucket:
Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Error Description: Ensure S3 bucket has 'restrict_public_bucket' enabled
Category: Storage | Severity: MEDIUM
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217

- Key: Name
Value: !Sub "${AWS::AccountId}-${CompanyName}-${Environment}-flowlogs"

MyBucket:
Copy link

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Error Description: Ensure all data stored in the S3 bucket have versioning enabled
Category: Storage | Severity: HIGH
Resource: AWS::S3::Bucket [MyBucket], lines: 206 - 217

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant