Show Output
```hcl
Results #1-2 CRITICAL Firewall rule allows ingress traffic from multiple addresses on the public internet. (2 similar results)
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
firewall.tf Lines 24-27
โโโโโโโโฌโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
24 โ source_ranges = [
25 โ "35.191.0.0/16",
26 โ "130.211.0.0/22"
27 โ ]
โโโโโโโโดโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
Individual Causes
- /github/workspace/firewall.tf:15-39 (google_compute_firewall.this)
- /github/workspace/firewall.tf:15-39 (google_compute_firewall.this)
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
ID google-compute-no-public-ingress
Impact The port is exposed for ingress from the internet
Resolution Set a more restrictive cidr range
More Information
- https://aquasecurity.github.io/tfsec/latest/checks/google/compute/no-public-ingress/
- https://registry.terraform.io/providers/hashicorp/google/latest/docs/resources/compute_firewall#source_ranges
- https://www.terraform.io/docs/providers/google/r/compute_firewall.html
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
timings
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
disk i/o 146.097ยตs
parsing 1.386579ms
adaptation 71.098ยตs
checks 3.924141ms
total 5.527915ms
counts
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
blocks 15
modules 1
files 7
results
โโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโโ
ignored 0
excluded 0
critical 2
high 0
medium 0
low 0
2 potential problem(s) detected.
```
This PR contains the following updates:
v2
->v3
Release Notes
actions/checkout
### [`v3`](https://togithub.com/actions/checkout/blob/HEAD/CHANGELOG.md#v302) [Compare Source](https://togithub.com/actions/checkout/compare/v2...v3) - [Add input `set-safe-directory`](https://togithub.com/actions/checkout/pull/770)Configuration
๐ Schedule: At any time (no schedule defined).
๐ฆ Automerge: Disabled by config. Please merge this manually once you are satisfied.
โป Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
๐ Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by WhiteSource Renovate. View repository job log here.