d6a47a82d2
improve cli output ( #1347 )
...
Signed-off-by: Daniel Grunberger <danielgrunberger@armosec.io >
Co-authored-by: Daniel Grunberger <danielgrunberger@armosec.io >
2023-08-16 13:01:32 +03:00
DRAGON
d946662e57
feat: migrate fatih/color to gchalk
...
Signed-off-by: DRAGON <anantvijay3@gmail.com >
2023-08-11 04:31:39 +05:30
DRAGON2002 and GitHub
9afae713ba
feat: add table heading colors ( #1321 )
...
Signed-off-by: DRAGON <anantvijay3@gmail.com >
2023-08-10 19:14:38 +03:00
DRAGON2002 and GitHub
6c1a3fb89b
feat: add short table ( #1292 )
...
Signed-off-by: DRAGON <anantvijay3@gmail.com >
Signed-off-by: DRAGON2002 <81813720+XDRAGON2002@users.noreply.github.com >
2023-08-09 16:56:58 +03:00
DRAGON2002 and GitHub
df5f7db51d
feat: change colors library ( #1316 )
...
Signed-off-by: DRAGON <anantvijay3@gmail.com >
2023-08-09 09:48:34 +03:00
DRAGON2002 and GitHub
869f0ea109
feat: add unicode table ( #1285 )
...
Signed-off-by: DRAGON <anantvijay3@gmail.com >
2023-08-09 09:26:37 +03:00
4c9fec8ef4
Support scanning scope ( #1293 )
...
* support scanning scope
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* update go mod
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* update white list
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* update go mod
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* scope empty return control should tested
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* update rego scope for system test
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* update test + mock
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* add comment
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* update rego library
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* update k8s-interface
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* update opa utils - lots of file changes in this commit since armoapi-go bump up in opa-utils
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* move to temp k8s-interface - till PR in k8s-interface repo will approved
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* update k8s-interface with released tag
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* update go mod in httphandler
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* PR review corrections
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* change test name
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* scanning scope support for framework
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* test/mock adjustments after merge
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* add more informative log to the user
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* update go.mod and go.sum of the http handler
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* remove framework just scanning scope not matched to framework config scope
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* add system tests to workflow
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
* add system test to github workflow
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
---------
Signed-off-by: rcohencyberarmor <rcohen@armosec.io >
Signed-off-by: David Wertenteil <dwertent@armosec.io >
Co-authored-by: rcohencyberarmor <rcohen@armosec.io >
Co-authored-by: David Wertenteil <dwertent@armosec.io >
2023-08-07 19:11:14 +03:00
David Wertenteil and GitHub
7444acae11
Merge pull request #1312 from XDRAGON2002/issue_1282
...
fix: negative compliance score
2023-08-03 14:32:47 +03:00
5379b9b0a6
New output ( #1320 )
...
* phase-1
Signed-off-by: Daniel Grunberger <danielgrunberger@armosec.io >
* factory
Signed-off-by: Daniel Grunberger <danielgrunberger@armosec.io >
* wip: feat(cli): add an image scanning command
Add a CLI command that launches an image scan. Does not scan images yet.
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* wip: feat: add image scanning service
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* chore: include dependencies
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* wip: adjust image scanning service
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* wip: feat: use scanning service in CLI
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* use iface
Signed-off-by: Daniel Grunberger <danielgrunberger@armosec.io >
* touches
Signed-off-by: Daniel Grunberger <danielgrunberger@armosec.io >
* continue
Signed-off-by: Daniel Grunberger <danielgrunberger@armosec.io >
* add cmd
Signed-off-by: Daniel Grunberger <danielgrunberger@armosec.io >
* support single workload scan
Signed-off-by: Amir Malka <amirm@armosec.io >
* fix conflict
Signed-off-by: Amir Malka <amirm@armosec.io >
* identifiers
* go mod
* feat(imagescan): add an image scanning command
This commit adds a CLI command and an associated package that scan
images for vulnerabilities.
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
feat(imagescan): fail on exceeding the severity threshold
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* chore(imagescan): include dependencies
This commit adds the dependencies necessary for image scanning.
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* chore(imagescan): add dependencies to httphandler
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* added unit tests
Signed-off-by: Amir Malka <amirm@armosec.io >
* merge
* more
* integrate img scan
* added unit tests
Signed-off-by: Amir Malka <amirm@armosec.io >
* more refactoring
Signed-off-by: Amir Malka <amirm@armosec.io >
* add scanned workload reference to opasessionobj
Signed-off-by: Amir Malka <amirm@armosec.io >
* fix GetWorkloadParentKind
Signed-off-by: Amir Malka <amirm@armosec.io >
* remove namespace argument from pullSingleResource, using field selector instead
Signed-off-by: Amir Malka <amirm@armosec.io >
* removed designators (unused) field from PolicyIdentifier, and designators argument from GetResources function
Signed-off-by: Amir Malka <amirm@armosec.io >
* changes
* changes
* fixes
* changes
* feat(imagescan): add an image scanning command
This commit adds a CLI command and an associated package that scan
images for vulnerabilities.
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
feat(imagescan): fail on exceeding the severity threshold
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* chore(imagescan): include dependencies
This commit adds the dependencies necessary for image scanning.
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* chore(imagescan): add dependencies to httphandler
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* chore(imagescan): create vuln db with dedicated function
Remove commented out code, too.
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* docs(imagescan): provide package-level docs
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
* finish merge
* image scan tests
* continue
* fixes
* refactor
* rm duplicate
* start fixes
* update gh actions
Signed-off-by: David Wertenteil <dwertent@armosec.io >
* pr fixes
* fix test
* improvements
---------
Signed-off-by: Daniel Grunberger <danielgrunberger@armosec.io >
Signed-off-by: Vlad Klokun <vklokun@protonmail.ch >
Signed-off-by: Amir Malka <amirm@armosec.io >
Signed-off-by: David Wertenteil <dwertent@armosec.io >
Co-authored-by: Daniel Grunberger <danielgrunberger@armosec.io >
Co-authored-by: Vlad Klokun <vklokun@protonmail.ch >
Co-authored-by: Amir Malka <amirm@armosec.io >
Co-authored-by: David Wertenteil <dwertent@armosec.io >
2023-08-03 12:09:33 +03:00
David Wertenteil and GitHub
d9e946cf6d
reset head ( #1306 )
...
Signed-off-by: David Wertenteil <dwertent@armosec.io >
2023-08-01 10:47:07 +03:00
DRAGON
d2af7f47db
fix: negative compliance score
...
Signed-off-by: DRAGON <anantvijay3@gmail.com >
2023-07-31 00:21:01 +05:30
Amir Malka
ea3172eda6
time-based cached policies
...
Signed-off-by: Amir Malka <amirm@armosec.io >
2023-07-10 10:54:56 +03:00
David Wertenteil and GitHub
8fa15688fb
Merge pull request #1260 from dwertent/deprecate-host-scanner
...
Deprecated host-scanner from CLI
2023-07-05 17:46:12 +03:00
Oshrat Nir and Oshrat Nir
3c38021f7c
Changed Assistance Remediation to Assited Remediation
...
Signed-off-by: Oshrat Nir <oshratn@gmail.com >
2023-07-04 13:13:50 +03:00
David Wertenteil
8989cc1679
Deprecated host-scanner
...
Signed-off-by: David Wertenteil <dwertent@armosec.io >
2023-07-04 09:43:10 +03:00
Nitish Chauhan and GitHub
6cefada215
correcting the formating of the table in pdf output ( #1244 )
...
* correcting the formatting of the table in pdf output
Signed-off-by: ntishchauhan0022 <nitishchauhan0022@gmail.com >
* adding some starting unit tests
Signed-off-by: ntishchauhan0022 <nitishchauhan0022@gmail.com >
* resolving the mod error
Signed-off-by: ntishchauhan0022 <nitishchauhan0022@gmail.com >
---------
Signed-off-by: ntishchauhan0022 <nitishchauhan0022@gmail.com >
2023-06-04 15:21:07 +03:00
Amir Malka
987f97102d
bump opa-utils version for memory optimizations
...
Signed-off-by: Amir Malka <amirm@armosec.io >
2023-05-22 16:44:11 +03:00
YiscahLevySilas1
b7935276e3
Merge branch 'master' of github.com:kubescape/kubescape into new-threshold-flag
...
Signed-off-by: YiscahLevySilas1 <yiscahls@armosec.io >
2023-04-27 15:56:12 +03:00
YiscahLevySilas1
d6edd818b8
add compliance score to new field in controls for backward compatibility
...
Signed-off-by: YiscahLevySilas1 <yiscahls@armosec.io >
2023-04-27 15:53:47 +03:00
YiscahLevySilas1 and GitHub
95e88f8581
add compliance-threshold, deprecate fail-threshold ( #1197 )
...
* add compliance-threshold, deprecate fail-threshold
Signed-off-by: YiscahLevySilas1 <yiscahls@armosec.io >
* update opa-utils version
Signed-off-by: YiscahLevySilas1 <yiscahls@armosec.io >
* update opa-utils version for fix in compliance score
Signed-off-by: YiscahLevySilas1 <yiscahls@armosec.io >
---------
Signed-off-by: YiscahLevySilas1 <yiscahls@armosec.io >
2023-04-24 15:33:30 +03:00
YiscahLevySilas1
344e9188f6
add compliance-threshold, deprecate fail-threshold
...
Signed-off-by: YiscahLevySilas1 <yiscahls@armosec.io >
2023-04-17 16:08:38 +03:00
Hollow Man
5c1a41e920
nit
...
Signed-off-by: Hollow Man <hollowman@opensuse.org >
2023-04-13 10:54:25 +03:00
Hollow Man
0b8d207615
Add more error check
...
Signed-off-by: Hollow Man <hollowman@opensuse.org >
2023-04-13 10:54:25 +03:00
Hollow Man
539b6c51b9
Add unit testcase
...
Signed-off-by: Hollow Man <hollowman@opensuse.org >
2023-04-13 10:54:25 +03:00
Hollow Man
19ca590e2f
S1023: redundant break statement (gosimple)
...
Signed-off-by: Hollow Man <hollowman@opensuse.org >
2023-04-13 10:54:25 +03:00
Hollow Man
4de50f82c0
feat(sarif): add fix object in generated reports
...
Signed-off-by: Hollow Man <hollowman@opensuse.org >
2023-04-13 10:54:19 +03:00
yuleib and GitHub
875deb7ec3
adding compliance score updates ( #1181 )
...
Signed-off-by: Yuval Leibovich <yuvall@armosec.io >
2023-04-04 16:03:40 +03:00
David Wertenteil
ec4a098b1c
replace error by warning
...
Signed-off-by: David Wertenteil <dwertent@armosec.io >
2023-03-15 17:17:29 +02:00
Frederic BIDON
7174f49f87
chore(lintin): run another pass of linting with the rules already in place
...
Signed-off-by: Frederic BIDON <fredbi@yahoo.com >
2023-03-05 20:16:37 +01:00
David Wertenteil
ac2aa764a4
marking structs that are implementing IPrinter
...
Signed-off-by: David Wertenteil <dwertent@armosec.io >
2023-02-24 09:18:54 +02:00
David Wertenteil and GitHub
915fa919b2
Fix HTML output ( #1111 )
...
* Fixed HTML template
Signed-off-by: David Wertenteil <dwertent@armosec.io >
* Adding HTML output format example
Signed-off-by: David Wertenteil <dwertent@armosec.io >
---------
Signed-off-by: David Wertenteil <dwertent@armosec.io >
2023-02-21 13:55:12 +02:00
Amir Malka and GitHub
df39e10300
Statuses ( #1016 ) ( #1082 )
...
New statuses
2023-02-14 15:00:21 +02:00
Matthias Bertschy
3a90682c9e
remove otel from CLI part
...
Signed-off-by: Matthias Bertschy <matthias.bertschy@gmail.com >
2023-01-31 10:03:56 +01:00
Matthias Bertschy
160ac0db7c
add otel with uptrace client
...
Signed-off-by: Matthias Bertschy <matthias.bertschy@gmail.com >
2023-01-31 08:06:33 +01:00
Ben
a3a61d65e9
Limiting the size of the name of controls in the pretty print of the tabel
...
Signed-off-by: Ben <ben@armosec.io >
2023-01-24 11:55:08 +02:00
David Wertenteil and GitHub
13c760c116
Merge branch 'master' into dev
2023-01-13 14:06:54 +02:00
David Wertenteil and GitHub
c6261e45a8
Merge pull request #1026 from kubescape/fix-command-indentation
...
Fix command indentation
2023-01-13 13:40:46 +02:00
Matthias Bertschy
c97513e4e8
only attempt to print existing attack graphs
2023-01-13 08:38:29 +01:00
Amir Malka and Vlad Klokun
0c87ff6843
Initial implementation of fix command ( #898 )
...
* Fix command initial implementation
2023-01-11 20:18:37 +02:00
Frederic BIDON
2e5ad85fe0
simplified trivial expressions (gosimple)
...
Signed-off-by: Frederic BIDON <fredbi@yahoo.com >
2023-01-06 09:32:18 +01:00
Frederic BIDON
1025431d64
fixed ineffectual assigns
...
Signed-off-by: Frederic BIDON <fredbi@yahoo.com >
2023-01-06 09:32:18 +01:00
Frederic BIDON
668514e08d
commented currently unused code
...
Signed-off-by: Frederic BIDON <fredbi@yahoo.com >
2023-01-06 09:32:17 +01:00
b4bdf4d860
Release ( #1000 )
...
* fixed flaky loop(cautils): loadpolicy getter
We should not inject pointers to the variable iterated over by the
"range" operator.
Signed-off-by: Frédéric BIDON <fredbi@yahoo.com >
* fixed more flaky pointers in loops (registryadaptors, opaprocessor)
Signed-off-by: Frédéric BIDON <fredbi@yahoo.com >
* fixed more flaky pointers in loops (resultshandling)
Signed-off-by: Frédéric BIDON <fredbi@yahoo.com >
* enabled golangci linter in CI
Signed-off-by: Frédéric BIDON <fredbi@yahoo.com >
* fixed linting issues with minimal linters config
Signed-off-by: Frédéric BIDON <fredbi@yahoo.com >
* bump go version to 1.19
* English and typos
* Support AKS parser (#994 )
* support GKE parser
* update go mod
* support GKE parser
* update go mod
* update k8s-interface pkg
* Added KS desgin.drawio
* revert k8s.io to v0.25.3
* ran go mod tidy
* update sign-up url
* [wip] Adding CreateAccount support
* revert to docs URL
* update opa-utils pkg
* Print attack tree (optional, with argument) (#997 )
* Print attack tree with the argument
Signed-off-by: Frédéric BIDON <fredbi@yahoo.com >
Co-authored-by: Frédéric BIDON <frederic@oneconcern.com >
Co-authored-by: Frédéric BIDON <fredbi@yahoo.com >
Co-authored-by: Oshrat Nir <45561829+Oshratn@users.noreply.github.com >
Co-authored-by: Amir Malka <amirm@armosec.io >
Co-authored-by: David Wertenteil <dwertent@armosec.io >
2023-01-03 11:30:09 +02:00
Amir Malka and GitHub
b309cfca7a
Print attack tree (optional, with argument) ( #997 )
...
* Print attack tree with argument
* fix
2023-01-03 08:46:50 +02:00
Frédéric BIDON
22052f5869
fixed more flaky pointers in loops (resultshandling)
...
Signed-off-by: Frédéric BIDON <fredbi@yahoo.com >
2022-12-26 17:47:10 +01:00
Vlad Klokun and Vlad Klokun
fe84225252
feat: notify about writing to an output file in PrettyPrinter
2022-12-22 15:00:59 +02:00
Vlad Klokun and Vlad Klokun
56da8d8d92
style: tidy up the PDFPrinter
...
- Shorten receiver names
- Modify comments to follow Go Doc convention
2022-12-22 15:00:59 +02:00
Vlad Klokun and Vlad Klokun
f135e95d2c
style: shorten receiver names in JUnitPrinter
2022-12-22 15:00:59 +02:00
Vlad Klokun and Vlad Klokun
db34183fc1
style: shorten receiver names in JSONPrinter
2022-12-22 15:00:59 +02:00
Vlad Klokun and Vlad Klokun
8f3af71c84
style: shorten receiver names in HTML Printer
2022-12-22 15:00:59 +02:00