mitre / inspec_tools

A command-line and ruby API of utilities, converters and tools for creating, converting and processing security baseline formats, results and data
https://inspec-tools.mitre.org/
Other
91 stars 30 forks source link

Threshold does not seem to respect 'error' value and only validates percentage. #244

Closed aaronlippold closed 3 years ago

aaronlippold commented 3 years ago

see build https://github.com/mitre/microsoft-edge-stig-baseline/actions/runs/1203403063 for an example

aaronlippold commented 3 years ago

If you look at the threshold file, it is defined to not have any errors but the CICD passed

Bialogs commented 3 years ago

Your threshold file does not define errors correctly. You need to set errors.total.max: 0