lacework / extensible-reporting

A command line tool for generating Lacework Reports
12 stars 4 forks source link

Cloud Compliance Finding not populated in the report #60

Closed DanielSobikLW closed 1 year ago

DanielSobikLW commented 1 year ago

Ran the CSA script for [customer name removed] and the report does not include any cloud compliance results

jvogt commented 1 year ago

This is blocked until the v2 migration of get-reports is complete for lacework/python-sdk.

Any customer tenant who has migrated to the newest benchmarks (IE benchmarks using policies identified by prefix lacework-global- will be affected until the python SDK is updated.

This is actually an issue in that we get the latest report, but we now generate many reports per account, including old reports using the old pre-LPP policies (which may be disabled).

Need to add logic to select the most-relevant report.

CC @aaronkornhauser for visibility