enabled checkov #6
Annotations
10 errors and 6 warnings
scan:
infra/load_balancer.tf#L2
CKV_AWS_91: "Ensure the ELBv2 (Application/Network) has access logging enabled"
|
scan:
infra/load_balancer.tf#L2
CKV_AWS_131: "Ensure that ALB drops HTTP headers"
|
scan:
infra/load_balancer.tf#L26
CKV_AWS_2: "Ensure ALB protocol is HTTPS"
|
scan:
infra/network.tf#L43
CKV_AWS_23: "Ensure every security groups rule has a description"
|
scan:
infra/network.tf#L43
CKV_AWS_25: "Ensure no security groups allow ingress from 0.0.0.0:0 to port 3389"
|
scan:
infra/network.tf#L43
CKV_AWS_24: "Ensure no security groups allow ingress from 0.0.0.0:0 to port 22"
|
scan:
infra/network.tf#L43
CKV_AWS_260: "Ensure no security groups allow ingress from 0.0.0.0:0 to port 80"
|
scan:
infra/network.tf#L52
CKV_AWS_23: "Ensure every security groups rule has a description"
|
scan:
infra/network.tf#L6
CKV2_AWS_11: "Ensure VPC flow logging is enabled in all VPCs"
|
scan:
infra/load_balancer.tf#L2
CKV2_AWS_20: "Ensure that ALB redirects HTTP requests into HTTPS ones"
|
scan
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/checkout@v3, github/codeql-action/upload-sarif@v2. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
scan
Failed to download action 'https://api.github.com/repos/bridgecrewio/checkov-action/tarball/c6c05b216fb705c2c425876173ebe2fcbd3eb91c'. Error: The request was canceled due to the configured HttpClient.Timeout of 100 seconds elapsing.
|
scan
Back off 18.531 seconds before retry.
|
scan
Failed to download action 'https://api.github.com/repos/bridgecrewio/checkov-action/tarball/c6c05b216fb705c2c425876173ebe2fcbd3eb91c'. Error: The request was canceled due to the configured HttpClient.Timeout of 100 seconds elapsing.
|
scan
Back off 29.388 seconds before retry.
|
scan
CodeQL Action v2 will be deprecated on December 5th, 2024. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2024-01-12-code-scanning-deprecation-of-codeql-action-v2/
|