INFRA - IaC - Checkov #2
Annotations
20 errors and 4 warnings
Run Checkov IaC Scanner
CKV_AZURE_116: "Ensure that AKS uses Azure Policies Add-on"
|
Run Checkov IaC Scanner
CKV_AZURE_8: "Ensure Kubernetes Dashboard is disabled"
|
Run Checkov IaC Scanner
CKV_AZURE_4: "Ensure AKS logging to Azure Monitoring is Configured"
|
Run Checkov IaC Scanner
CKV_AZURE_6: "Ensure AKS has an API Server Authorized IP Ranges enabled"
|
Run Checkov IaC Scanner
CKV_AZURE_232: "Ensure that only critical system pods run on system nodes"
|
Run Checkov IaC Scanner
CKV_AZURE_226: "Ensure ephemeral disks are used for OS disks"
|
Run Checkov IaC Scanner
CKV_AZURE_172: "Ensure autorotation of Secrets Store CSI Driver secrets for AKS clusters"
|
Run Checkov IaC Scanner
CKV_AZURE_141: "Ensure AKS local admin account is disabled"
|
Run Checkov IaC Scanner
CKV_AZURE_168: "Ensure Azure Kubernetes Cluster (AKS) nodes should use a minimum number of 50 pods."
|
Run Checkov IaC Scanner
CKV_AZURE_117: "Ensure that AKS uses disk encryption set"
|
Generate SARIF Report
CKV_AZURE_116: "Ensure that AKS uses Azure Policies Add-on"
|
Generate SARIF Report
CKV_AZURE_8: "Ensure Kubernetes Dashboard is disabled"
|
Generate SARIF Report
CKV_AZURE_4: "Ensure AKS logging to Azure Monitoring is Configured"
|
Generate SARIF Report
CKV_AZURE_6: "Ensure AKS has an API Server Authorized IP Ranges enabled"
|
Generate SARIF Report
CKV_AZURE_232: "Ensure that only critical system pods run on system nodes"
|
Generate SARIF Report
CKV_AZURE_226: "Ensure ephemeral disks are used for OS disks"
|
Generate SARIF Report
CKV_AZURE_172: "Ensure autorotation of Secrets Store CSI Driver secrets for AKS clusters"
|
Generate SARIF Report
CKV_AZURE_141: "Ensure AKS local admin account is disabled"
|
Generate SARIF Report
CKV_AZURE_168: "Ensure Azure Kubernetes Cluster (AKS) nodes should use a minimum number of 50 pods."
|
Generate SARIF Report
CKV_AZURE_117: "Ensure that AKS uses disk encryption set"
|
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/checkout@v2, actions/upload-artifact@v2, github/codeql-action/upload-sarif@v2. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
The following actions uses node12 which is deprecated and will be forced to run on node16: actions/checkout@v2, actions/upload-artifact@v2. For more info: https://github.blog/changelog/2023-06-13-github-actions-all-actions-will-run-on-node16-instead-of-node12-by-default/
|
Upload Checkov scan results to GitHub Security tab
CodeQL Action v2 will be deprecated on December 5th, 2024. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2024-01-12-code-scanning-deprecation-of-codeql-action-v2/
|
The following artifacts were uploaded using a version of actions/upload-artifact that is scheduled for deprecation: "SARIF results".
Please update your workflow to use v4 of the artifact actions.
Learn more: https://github.blog/changelog/2024-04-16-deprecation-notice-v3-of-the-artifact-actions/
|
Loading