FP AVD-AWS-0035 #5146
Replies: 2 comments
-
It would be helpful to see a small snippet with which we can reproduce this issue. FYI this rule isn't new as it has existed for several years. |
Beta Was this translation helpful? Give feedback.
-
Just hit this issue as well, i'll attempt to provide some context. On ECS several different types of data volumes are supported. In our case, we use a bind mount in our task definition. With this configuration, ECS uses ephemeral storage, which is by default encrypted when running on Fargate 1.4.0. So, I guess at the very least the detection rule should more specifically target EFS volumes (e.g., |
Beta Was this translation helpful? Give feedback.
-
IDs
AVD-AWS-0035
Description
Customer is having an AVD-AWS-0035 in the Supply Chain, but as they insist, they don’t use EFS volume
Reproduction Steps
Target
Filesystem
Scanner
Misconfiguration
Target OS
No response
Debug Output
.
Version
Checklist
-f json
that shows data sources and confirmed that the security advisory in data sources was correctBeta Was this translation helpful? Give feedback.
All reactions