From 8e35e63359f8ea54022d9c4532e0864cb5171fff Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?=C4=B0lyas=20Apayd=C4=B1n?= Date: Thu, 14 Jan 2021 13:38:33 +0300 Subject: [PATCH] fix regex in check43 --- checks/check43 | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/checks/check43 b/checks/check43 index 9c1f5d49..78c47f92 100644 --- a/checks/check43 +++ b/checks/check43 @@ -23,7 +23,7 @@ check43(){ for regx in $REGIONS; do CHECK_SGDEFAULT_IDS=$($AWSCLI ec2 describe-security-groups $PROFILE_OPT --region $regx --filters Name=group-name,Values='default' --query 'SecurityGroups[*].GroupId[]' --output text) for CHECK_SGDEFAULT_ID in $CHECK_SGDEFAULT_IDS; do - CHECK_SGDEFAULT_ID_OPEN=$($AWSCLI ec2 describe-security-groups $PROFILE_OPT --region $regx --group-ids $CHECK_SGDEFAULT_ID --query 'SecurityGroups[*].{IpPermissions:IpPermissions,IpPermissionsEgress:IpPermissionsEgress,GroupId:GroupId}' --output text |egrep '0.0.0.0|\:\:\/0') + CHECK_SGDEFAULT_ID_OPEN=$($AWSCLI ec2 describe-security-groups $PROFILE_OPT --region $regx --group-ids $CHECK_SGDEFAULT_ID --query 'SecurityGroups[*].{IpPermissions:IpPermissions,IpPermissionsEgress:IpPermissionsEgress,GroupId:GroupId}' --output text |egrep ' 0.0.0.0|\:\:\/0') if [[ $CHECK_SGDEFAULT_ID_OPEN ]];then textFail "Default Security Groups ($CHECK_SGDEFAULT_ID) found that allow 0.0.0.0 IN or OUT traffic in Region $regx" "$regx" else