From ddb498320ac7ecf38662b4bea0972803df43cf3d Mon Sep 17 00:00:00 2001 From: "Mr. Secure" Date: Mon, 14 Oct 2019 15:39:33 -0500 Subject: [PATCH 1/2] bring in quoting nits --- util/multi-account/megaprowler.sh | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/util/multi-account/megaprowler.sh b/util/multi-account/megaprowler.sh index 6c4a90f1..623b642e 100644 --- a/util/multi-account/megaprowler.sh +++ b/util/multi-account/megaprowler.sh @@ -197,6 +197,6 @@ ${PARALLEL_END} echo "Completed ${CHECKGROUP} audit with stamp ${STAMP}" # mkdir -p ${OUTBASE}/logs/debug/${DAYPATH} -# cp $AWS_MASTERS_CREDENTIALS_FILE ${OUTLOGS}/${STAMP}-master_creds.txt -# cp $AWS_TARGETS_CREDENTIALS_FILE ${OUTLOGS}/${STAMP}-target_creds.txt +# cp "$AWS_MASTERS_CREDENTIALS_FILE" "${OUTLOGS}/${STAMP}-master_creds.txt" +# cp "$AWS_TARGETS_CREDENTIALS_FILE" "${OUTLOGS}/${STAMP}-target_creds.txt" rm "$AWS_MASTERS_CREDENTIALS_FILE" "$AWS_TARGETS_CREDENTIALS_FILE" From d4fad174160d1ca4c62aa6d936fa71a04e4e2833 Mon Sep 17 00:00:00 2001 From: "Mr. Secure" Date: Mon, 14 Oct 2019 15:42:09 -0500 Subject: [PATCH 2/2] update pipeline commands to use multi-account path --- util/multi-account/Audit_Pipeline.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/util/multi-account/Audit_Pipeline.yaml b/util/multi-account/Audit_Pipeline.yaml index c8b7ef8c..acd0c216 100644 --- a/util/multi-account/Audit_Pipeline.yaml +++ b/util/multi-account/Audit_Pipeline.yaml @@ -287,8 +287,8 @@ Resources: # - /bin/bash prowler/prowler -g cislevel1 -M csv -n -k > ${OUTBASE}/${STAMP}.${PROWLER_ACCOUNT_ID}.prowler.cislevel1.csv || /bin/true # - /bin/bash prowler/prowler -g forensics-ready -M csv -n -k > ${OUTBASE}/${STAMP}.${PROWLER_ACCOUNT_ID}.prowler.forensics-ready.csv || /bin/true #### Run Prowler targeting all accounts in the configured organizations - - test -f prowler/util/config - - /bin/bash prowler/util/megaprowler.sh out + - test -f prowler/util/multi-account/config + - /bin/bash prowler/util/multi-account/megaprowler.sh out finally: - ps axuwww | grep -E 'parallel|sem|prowler' post_build: