Skip to content

enabled checkov

enabled checkov #6

Triggered via pull request April 22, 2024 11:59
Status Failure
Total duration 4m 43s
Artifacts

code-scan.yml

on: pull_request
Fit to window
Zoom out
Zoom in

Annotations

10 errors and 6 warnings
scan: infra/load_balancer.tf#L2
CKV_AWS_91: "Ensure the ELBv2 (Application/Network) has access logging enabled"
scan: infra/load_balancer.tf#L2
CKV_AWS_131: "Ensure that ALB drops HTTP headers"
scan: infra/load_balancer.tf#L26
CKV_AWS_2: "Ensure ALB protocol is HTTPS"
scan: infra/network.tf#L43
CKV_AWS_23: "Ensure every security groups rule has a description"
scan: infra/network.tf#L43
CKV_AWS_25: "Ensure no security groups allow ingress from 0.0.0.0:0 to port 3389"
scan: infra/network.tf#L43
CKV_AWS_24: "Ensure no security groups allow ingress from 0.0.0.0:0 to port 22"
scan: infra/network.tf#L43
CKV_AWS_260: "Ensure no security groups allow ingress from 0.0.0.0:0 to port 80"
scan: infra/network.tf#L52
CKV_AWS_23: "Ensure every security groups rule has a description"
scan: infra/network.tf#L6
CKV2_AWS_11: "Ensure VPC flow logging is enabled in all VPCs"
scan: infra/load_balancer.tf#L2
CKV2_AWS_20: "Ensure that ALB redirects HTTP requests into HTTPS ones"
scan
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/checkout@v3, github/codeql-action/upload-sarif@v2. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
scan
Failed to download action 'https://api.github.com/repos/bridgecrewio/checkov-action/tarball/c6c05b216fb705c2c425876173ebe2fcbd3eb91c'. Error: The request was canceled due to the configured HttpClient.Timeout of 100 seconds elapsing.
scan
Back off 18.531 seconds before retry.
scan
Failed to download action 'https://api.github.com/repos/bridgecrewio/checkov-action/tarball/c6c05b216fb705c2c425876173ebe2fcbd3eb91c'. Error: The request was canceled due to the configured HttpClient.Timeout of 100 seconds elapsing.
scan
Back off 29.388 seconds before retry.
scan
CodeQL Action v2 will be deprecated on December 5th, 2024. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2024-01-12-code-scanning-deprecation-of-codeql-action-v2/