Open Bialogs opened 5 years ago
This is related to the new InSpec 3.x data structures.
We need to update vulcan, heimdall and heimdall-lite to support these additional features
I actually want a couple things out of that PR for both Heimdall and Heimdall-Lite and Vulcan and the _tools.
( please create an issues on each project for this - and create a PR or PRs to cover the 6 elements )
caveat
and or justification
are appended to the 'Finding Details'
b. We actually search for /*caveat*/
and /*justification*/
- such that myorg-/_caveat
is discovered.
b. that discussion
or /*discussion*/
be appended to the bottom of the general description - such that vulnerability_discussion
would be discovered.high (0.7)
inspec_tools
and heimdall_tools
to use the new sub-sections and text based impactsCAT I / CAT II / CAT III
be replaced by High / Medium / Low
"
where '
are the correct style @aaronlippold For what its worth, this data set works as-is on the version of heimdall-lite we have been using
The InSpec output that our tests are generating has this additional
"descriptions":
field that is not included in thecontrol.rb
model.When uploading an evaluation that includes this field, the following error is thrown:
Is this a problem with our InSpec output? How can I correct that? If not, I have a fix ready to go that adds the following to
control.rb
and lets me upload my evaluation without a problem.