Toni de la Fuente
fc58cd535c
Fixed issue #114
2017-10-26 17:14:41 -04:00
Toni de la Fuente
ca469b5f7c
issue #85
2017-10-26 16:58:14 -04:00
neonbunny
1df55ebf60
Clarify warning message when CloudTrail is not consumed by CloudWatch
2017-09-26 14:49:05 +01:00
neonbunny
3ccf28617e
Clarify warning message
...
A previous change replaced a comma in the message with the word "but" which is incorrect - the missing KMS key was the indicator that the trail was not encrypted.
2017-09-22 11:22:59 +01:00
Toni de la Fuente
c7925b6f94
Fix issue #103
...
Fix issue #103
2017-09-11 18:16:18 -04:00
Toni de la Fuente
dfd8e74003
issue #101
...
added numeral feature request issue #101
2017-09-08 18:18:40 -04:00
Toni de la Fuente
73f7c3d16d
removed printCurrentDate reference
2017-08-22 10:55:18 +02:00
Toni de la Fuente
1618568be2
Merge branch 'master' into referencelong
2017-08-22 10:39:41 +02:00
Toni de la Fuente
436ea15d9a
Merge pull request #99 from hemedga/short
...
Fix issue #96 - remove bit.ly reference
2017-08-22 10:35:54 +02:00
Hemed Gur-Ary
866200d018
Fix issue #96 - remove bit.ly reference
2017-08-22 00:34:17 +03:00
Hemed Gur-Ary
afb914f9d7
Updated infoReferenceLong() text and moved the function call
2017-08-22 00:19:49 +03:00
Hemed Gur-Ary
43918cfcfe
removed printCurrentDate() and added current date to banner
2017-08-21 23:44:34 +03:00
Toni de la Fuente
711ebf3878
Added max items option to extra72 issue #94
...
issue #94
2017-08-14 18:24:31 -04:00
Ben Allen
580cacede5
make sure CSV header is shown before any results
2017-08-02 21:49:09 -05:00
Ben Allen
e4f6825662
add level to CSV output
2017-08-02 21:41:19 -05:00
Ben Allen
86bbb4583c
update scored/level marking for level2 & support
2017-08-02 21:39:12 -05:00
Ben Allen
b9b0e3fcb3
update scored/level marking for level1 & extras
2017-08-02 21:34:21 -05:00
Ben Allen
c66d581ed2
restore not-scored markers to multiple checks.
2017-08-02 15:09:07 -05:00
Stephen Tomkinson
7e8fa330b5
Fixed a few more typos
2017-07-28 14:26:30 +01:00
Stephen Tomkinson
abb2bfbe9f
Fixed broken sed expression and a typo in the output.
2017-07-28 14:17:01 +01:00
Toni de la Fuente
29221bc5a9
fixed issue with mktemp at temp policy file
...
As per GNU mktemp man, TEMPLATE must contain at least 3 consecutive ‘X’s in last component .XXXXXXXXXX on the temp file. It is a bit different for the BSD version.
2017-07-24 10:38:50 -04:00
Toni de la Fuente
7eb08ddea4
Improved and error handling for checks sec 1 and 4
...
check41 Fixed sg-group handling with sg-id instead of name
check15 to check111 improved error handling for brand new aws accounts
2017-07-21 11:34:47 -04:00
Toni de la Fuente
955cde08fd
Improved extra73 (s3 bucket permissions)
...
Now extra73 checks for S3 policies that have Allow for Principal as *.
2017-07-21 00:13:11 -04:00
Toni de la Fuente
ed2448dbe0
Fixed bug in extra73 for buckets in EU (eu-west-1)
2017-07-19 13:33:03 -04:00
Toni de la Fuente
7eeee0e777
Improved extra73 to check also Authenticated users
...
Ensure there are no S3 buckets open to the Everyone or Any AWS user (Not Scored) (Not part of CIS benchmark)
2017-07-19 10:57:05 -04:00
Toni de la Fuente
2faa50c4de
fixed typo in TITTLE73
2017-07-18 11:47:56 -04:00
Toni de la Fuente
ae274b2fc9
Added check73 S3 buckets open to the AllUsers
2017-07-18 11:45:52 -04:00
Toni de la Fuente
255b6f4ccb
Added extra check72
...
7.2 Ensure there are no EBS Snapshots set as Public (Not Scored) (Not part of CIS benchmark)
2017-07-18 09:15:31 -04:00
Toni de la Fuente
93d5d7295f
Merge pull request #73 from MrSecure/extra71-admins
...
add extra check - look for admins w/o MFA
2017-07-17 23:08:45 -04:00
Ben Allen
bb1cb1e081
add extra71 check
2017-07-17 21:43:43 -05:00
Ben Allen
1527e438a1
update check315 to provide more consistent display of topics & subscriptiongs
2017-07-17 21:42:18 -05:00
Toni de la Fuente
c2540b2828
fixed issue with check 3.15
2017-07-17 22:27:12 -04:00
Toni de la Fuente
ebf80a6455
Added CIS profile definitions checks
...
level1 and level2 profile definition checks enabled see https://github.com/Alfresco/prowler/issues/64
2017-07-17 21:14:46 -04:00
Toni de la Fuente
e3400b05ba
fixed issue #65
...
added --output json to those places needed to override different default configuration
2017-07-17 20:49:19 -04:00
Ben Allen
68f8e08506
add option (-k) to keep the credential report after execution.
2017-07-11 16:24:42 -05:00
Ben Allen
866fe11610
fix typo in function name
2017-07-11 16:23:50 -05:00
Ben Allen
f787c57636
improve trap handling
2017-07-11 16:04:27 -05:00
Ben Allen
93b815ecf2
gather count of topics per region, even when unable to list subscribers.
2017-07-11 15:58:50 -05:00
Ben Allen
fe99890683
swallow error message for list-subscriptions-by-topic
2017-07-11 15:58:42 -05:00
Ben Allen
9ef23aecca
handle permission failure on list-subscriptions-by-topic gracefully
2017-07-11 15:58:34 -05:00
Ben Allen
043fa32aef
exit script if there are problems with the credentials.
2017-07-11 15:58:21 -05:00
Ben Allen
5bdd5d8e54
add account number to CSV output.
2017-07-11 15:57:33 -05:00
Ben Allen
df47f94cf9
change name of temp file so that it's random
...
Allows multiple instances of prowler to run in parallel (eg. via xargs
-P ).
Also, add trap handler to remove temp file if interrupted.
2017-07-11 15:57:33 -05:00
Ben Allen
7b6f168d8c
update output for check 1.22 to handle multiple users
2017-07-11 15:57:16 -05:00
Ben Allen
d0f587fd55
fix spelling error in CSV output
2017-06-27 11:31:04 -05:00
Ben Allen
94efa3028a
clean up CSV output for 1.23 when multiple users match
2017-06-27 09:06:29 -05:00
Ben Allen
085ddae3b9
capture script start time using well supported date arguments
2017-06-27 08:52:55 -05:00
Ben Allen
8232a07437
clean up usage of expr
2017-06-26 17:06:17 -05:00
Ben Allen
e9122b3453
move CSV separator character to a variable
2017-06-26 16:50:57 -05:00
Ben Allen
43527302ac
remove commas from output text
2017-06-26 16:45:17 -05:00