nlamirault / terraform-google-traffic-director

Terraform module for Google Traffic Director
0 stars 2 forks source link

Update TFLint plugin terraform-linters/tflint-ruleset-google to v0.27.1 #23

Closed renovate[bot] closed 8 months ago

renovate[bot] commented 9 months ago

Mend Renovate

This PR contains the following updates:

Package Type Update Change
terraform-linters/tflint-ruleset-google plugin minor 0.26.0 -> 0.27.1

Release Notes

terraform-linters/tflint-ruleset-google (terraform-linters/tflint-ruleset-google) ### [`v0.27.1`](https://togithub.com/terraform-linters/tflint-ruleset-google/blob/HEAD/CHANGELOG.md#0271-2024-02-24) [Compare Source](https://togithub.com/terraform-linters/tflint-ruleset-google/compare/v0.27.0...v0.27.1) ##### Enhancements - [#​335](https://togithub.com/terraform-linters/tflint-ruleset-google/pull/335): feat: add H100 machine-type to ruleset ##### Chores - [#​334](https://togithub.com/terraform-linters/tflint-ruleset-google/pull/334): Bump google.golang.org/api from 0.163.0 to 0.165.0 ### [`v0.27.0`](https://togithub.com/terraform-linters/tflint-ruleset-google/blob/HEAD/CHANGELOG.md#0270-2024-02-14) [Compare Source](https://togithub.com/terraform-linters/tflint-ruleset-google/compare/v0.26.0...v0.27.0) ##### Breaking Changes - [#​332](https://togithub.com/terraform-linters/tflint-ruleset-google/pull/332): Update Magic Module - The following rules are renamed - `google_big_query_routine_invalid_determinism_level` -> `google_bigquery_routine_invalid_determinism_level` - `google_big_query_routine_invalid_language` -> `google_bigquery_routine_invalid_language` - `google_big_query_routine_invalid_routine_type` -> `google_bigquery_routine_invalid_routine_type` - `google_cloud_build_trigger_invalid_include_build_logs` -> `google_cloudbuild_trigger_invalid_include_build_logs` - `google_security_center_organization_custom_module_invalid_enablement_state` -> `google_scc_event_threat_detection_custom_module_invalid_enablement_state` - `google_security_center_folder_custom_module` -> `google_scc_folder_custom_module_invalid_enablement_state` - `google_security_center_project_custom_module_invalid_enablement_state` -> `google_scc_project_custom_module_invalid_enablement_state` - `google_security_center_source_invalid_display_name` -> `google_scc_source_invalid_display_name` - Removed `google_compute_router_peer_invalid_advertise_mode` rule ##### Chores - [#​320](https://togithub.com/terraform-linters/tflint-ruleset-google/pull/320): Bump actions/setup-go from 4 to 5 - [#​328](https://togithub.com/terraform-linters/tflint-ruleset-google/pull/328): Bump github.com/hashicorp/terraform-plugin-sdk/v2 from 2.29.0 to 2.32.0 - [#​331](https://togithub.com/terraform-linters/tflint-ruleset-google/pull/331): Bump google.golang.org/api from 0.150.0 to 0.163.0 - [#​333](https://togithub.com/terraform-linters/tflint-ruleset-google/pull/333): deps: Go 1.22

Configuration

๐Ÿ“… Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

๐Ÿšฆ Automerge: Disabled by config. Please merge this manually once you are satisfied.

โ™ป Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

๐Ÿ”• Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.

github-actions[bot] commented 9 months ago

Terraform Security Scan Failed

Show Output ```hcl Results #1-2 CRITICAL Firewall rule allows ingress traffic from multiple addresses on the public internet. (2 similar results) โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ firewall.tf:24-27 โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ 15 resource "google_compute_firewall" "this" { .. 24 โ”Œ source_ranges = [ 25 โ”‚ "35.191.0.0/16", 26 โ”‚ "130.211.0.0/22" 27 โ”” ] .. 39 } โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ Individual Causes - firewall.tf:15-39 (google_compute_firewall.this) 2 instances โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ ID google-compute-no-public-ingress Impact The port is exposed for ingress from the internet Resolution Set a more restrictive cidr range More Information - https://aquasecurity.github.io/tfsec/latest/checks/google/compute/no-public-ingress/ - https://registry.terraform.io/providers/hashicorp/google/latest/docs/resources/compute_firewall#source_ranges - https://www.terraform.io/docs/providers/google/r/compute_firewall.html โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ timings โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ disk i/o 109.204ยตs parsing 681.702ยตs adaptation 98.534ยตs checks 3.970585ms total 4.860025ms counts โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ modules downloaded 0 modules processed 1 blocks processed 15 files read 7 results โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ passed 0 ignored 0 critical 2 high 0 medium 0 low 0 2 potential problem(s) detected. ```
github-actions[bot] commented 9 months ago

Terraform Security Scan Failed

Show Output ```hcl Results #1-2 CRITICAL Firewall rule allows ingress traffic from multiple addresses on the public internet. (2 similar results) โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ firewall.tf:24-27 โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ 15 resource "google_compute_firewall" "this" { .. 24 โ”Œ source_ranges = [ 25 โ”‚ "35.191.0.0/16", 26 โ”‚ "130.211.0.0/22" 27 โ”” ] .. 39 } โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ Individual Causes - firewall.tf:15-39 (google_compute_firewall.this) 2 instances โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ ID google-compute-no-public-ingress Impact The port is exposed for ingress from the internet Resolution Set a more restrictive cidr range More Information - https://aquasecurity.github.io/tfsec/latest/checks/google/compute/no-public-ingress/ - https://registry.terraform.io/providers/hashicorp/google/latest/docs/resources/compute_firewall#source_ranges - https://www.terraform.io/docs/providers/google/r/compute_firewall.html โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ timings โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ disk i/o 111.116ยตs parsing 700.633ยตs adaptation 97.062ยตs checks 4.427351ms total 5.336162ms counts โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ modules downloaded 0 modules processed 1 blocks processed 15 files read 7 results โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€ passed 0 ignored 0 critical 2 high 0 medium 0 low 0 2 potential problem(s) detected. ```