Pablo Pagani
5385c4e546
Improved error handling sts get-caller-identity
...
Instead of looking for a fixed error string, it uses error codes from aws cli
Previos condition was not catching this error message:
An error occurred (ExpiredToken) when calling the GetCallerIdentity operation: The security token included in the request is expired
Also forced the output of the command to json. In some tests I was doing was failing becuase it was sending output as text
2021-05-01 17:54:11 -03:00
Toni de la Fuente
721b15d105
Fixed issue #776
2021-04-15 09:30:31 +02:00
Toni de la Fuente
53117819fc
Fixed credentials renew issue #775
2021-04-14 11:47:38 +02:00
Toni de la Fuente
2552f2977d
Fixed issue #775
2021-04-12 21:23:28 +02:00
Toni de la Fuente
e4edc2fa2c
Improved feature to refresh assume role credentials before it expires
2021-04-09 15:13:13 +02:00
Toni de la Fuente
3dfca9c9dd
Improved html output with scoring information
2021-04-08 00:14:24 +02:00
Toni de la Fuente
dacfea6b32
Included Risk, Remediation and Link support for CSV and HTML outputs
2021-04-07 18:42:44 +02:00
Toni de la Fuente
574a9c94b0
Added Risk, Remediation and Link to html report
2021-04-07 18:40:50 +02:00
Toni de la Fuente
c0f3265754
Better handle permissions and errors
2021-03-24 15:41:51 +01:00
C.J
7e6291c51d
Cloudtrail metrics pass if found on any, not every, cloudtrail log
2021-02-09 12:29:43 -05:00
Toni de la Fuente
e6d175d62e
Check for errors generating credential report, limit loop iterations @zfLQ2qx2
...
Check for errors generating credential report, limit loop iterations @zfLQ2qx2
2021-02-02 15:28:32 +01:00
Toni de la Fuente
f9c2e0cf26
Revert PR #718
2021-01-22 16:17:26 +01:00
Toni de la Fuente
6f371744dc
Added AWS service name to json, csv and html outputs
2021-01-22 10:56:59 +01:00
Toni de la Fuente
73cac580f3
Added severity field to CSV and HTML output reports
2021-01-21 22:42:40 +01:00
C.J
be3e771454
Check for errors generating credential report, limit loop iterations
2021-01-14 04:41:16 -05:00
Toni de la Fuente
6cbee3b16c
Fix log metric filter check3x with multiple trails @bridgecrewio
...
Fix log metric filter check3x with multiple trails @bridgecrewio
2021-01-13 23:08:17 +01:00
Toni de la Fuente
a53aeff0e8
Catch errors assuming role and describing regions @zfLQ2qx2
...
Catch errors assuming role and describing regions @zfLQ2qx2
2021-01-13 22:50:11 +01:00
Toni de la Fuente
0d4988b874
Additional check for location of awscli @zfLQ2qx2
...
Additional check for location of awscli @zfLQ2qx2
2021-01-13 21:25:04 +01:00
C.J
1d9c1eaece
Catch errors assuming role and describing regions
2021-01-13 09:44:15 -05:00
C.J
f53a32ae26
Additional check for location of awscli
2021-01-12 11:03:30 -05:00
C.J
bf1bd505c5
Fix for busybox date command
2021-01-12 09:11:52 -05:00
Toni de la Fuente
953bdf3034
Merge branch 'master' into master
2020-12-18 10:24:25 +01:00
Toni de la Fuente
e298158bcd
Enhanced error handling without credentials
2020-12-17 17:15:17 +01:00
Toni de la Fuente
91ce905a5a
Fix issue assuming role in regions with STS disabled
2020-12-17 16:34:10 +01:00
Toni de la Fuente
347872a6de
Refresh assumed role credentials to avoid role chaining limitations @michael-dickinson-sainsburys
...
Refresh assumed role credentials to avoid role chaining limitations @michael-dickinson-sainsburys
2020-12-17 15:24:06 +01:00
Toni de la Fuente
5c620949f0
Update os_detector
...
Change above is because epoch time generator in BSD is 1h less than in Linux
2020-12-17 15:20:20 +01:00
Toni de la Fuente
5be38a15d9
Update os_detector bsd_convert_date_to_timestamp
2020-12-17 10:24:25 +01:00
Toni de la Fuente
5e38c61286
Refresh assumed role credentials to avoid role chaining limitations @michael-dickinson-sainsburys
...
Refresh assumed role credentials to avoid role chaining limitations @michael-dickinson-sainsburys
2020-12-16 20:04:21 +00:00
Toni de la Fuente
de3e2c3a2b
Added support to run inside AWS CloudShell
2020-12-16 13:41:54 +01:00
Toni de la Fuente
aa0440e426
Revert "Refresh assumed role credentials to avoid role chaining limitations"
2020-12-15 17:37:42 +01:00
Toni de la Fuente
31182059e4
Refresh assumed role credentials to avoid role chaining limitations @michael-dickinson-sainsburys
...
Refresh assumed role credentials to avoid role chaining limitations @michael-dickinson-sainsburys
2020-12-15 17:29:11 +01:00
Toni de la Fuente
3d62aedf29
New RC6 including ENS as a new compliance type all formats
2020-12-01 10:03:59 +01:00
Michael Dickinson
8ab91e9f8e
fix: Store assumed role expiry time for later checking
2020-11-23 21:05:11 +00:00
mikeurbanski1
4fddb7fa63
Fix log metric filter checks ( #33 )
...
* debug statements for issue demonstration
* use separate array elements
* add debug and comments
* clean up debug statements
2020-11-23 09:26:44 -06:00
Pete Wright
65bbdfdd83
Fix FreeBSD $OSTYPE check
...
As per this bug report:
https://github.com/toniblyx/prowler/issues/693
Add detection for freebsd releases which should be similar to darwin
in that it will use GNU coreutils for date and base64.
2020-11-20 13:29:21 -08:00
Toni de la Fuente
b702990ea6
Fix: Security Hub eventual consistency + PREFIX query bug + Archive PASSED @xeroxnir
...
Fix: Security Hub eventual consistency + PREFIX query bug + Archive PASSED
2020-11-13 19:16:58 +01:00
Toni de la Fuente
c934e788b7
Center logo in html report
2020-11-13 18:22:09 +01:00
Joaquin Rinaudo
f6d17ba6e0
fix(securityhub): consistency + prefix bug + PASSED
...
fix(securityhub): consistency + prefix bug + PASSED
2020-11-12 21:48:21 +01:00
Toni de la Fuente
6188021e63
Adding fix to generate test summary so reports display graphs correctly @stevecjones
...
Adding fix to generate test summary so reports display graphs correctly @stevecjones
2020-11-03 21:14:05 +01:00
Stephen Jones
e7f837eb7b
Correct typo and simplify count
2020-11-03 22:45:27 +11:00
Stephen Jones
87f91cf467
Removing gnarly code and add refined counters for summary metrics in output
2020-10-30 22:51:11 +11:00
Toni de la Fuente
ae1d7be7f2
Enable Security Hub official integration
2020-10-29 22:40:38 +01:00
Stephen Jones
2756f16c87
Adding fix to generate test summary so reports display graphs correctly
2020-10-22 02:15:15 +11:00
Toni de la Fuente
c34535f585
Fix report metadata in html output
2020-10-15 22:01:28 +02:00
Toni de la Fuente
fa925bdef2
Fix account id in output file name
2020-10-15 21:56:44 +02:00
Toni de la Fuente
60c741a202
Merge branch 'master' of https://github.com/toniblyx/prowler into master
2020-09-24 14:55:20 +02:00
Toni de la Fuente
c14799915c
Fix issue #659
2020-09-24 14:55:10 +02:00
Joaquin Rinaudo
321401f755
fix(securityhub): other os/check fixes + batch in 100 findings
2020-09-24 09:34:09 +02:00
Joaquin Rinaudo
660bbf5676
fix(security-hub): race condition timestamp
2020-09-18 18:14:05 +02:00
Joaquin Rinaudo
65638af6a1
bugfix(securityhub): missing ,
2020-09-18 15:25:51 +02:00