feat: Support null
terraform values for misconf scanning
#4780
Labels
kind/feature
Categorizes issue or PR as related to a new feature.
scan/misconfiguration
Issues relating to misconfiguration scanning
Milestone
Discussed in #4736
Originally posted by gberenice June 29, 2023
Description
Hey!
We use terraform module cloudposseterraform-aws-s3-bucket v3.1.2 in our configuration, but Trivy scan (that is run as a Trunk check) fails with the error we don't expect to see:
Both encryption and versioning are enabled and configured.
S3 bucket encryption is managed via the resource
aws_s3_bucket_server_side_encryption_configuration
.This is our state:
Similar for versioning, in the state our resource
aws_s3_bucket_versioning
looks like:Desired Behavior
Scan
trivy config main.tf
is successfully passed.Actual Behavior
Scan fails.
Reproduction Steps
Checklist
trivy --reset
The text was updated successfully, but these errors were encountered: