diff --git a/checks/check_extra7162 b/checks/check_extra7162 index f0f51199f0..af8adcca19 100644 --- a/checks/check_extra7162 +++ b/checks/check_extra7162 @@ -18,7 +18,7 @@ CHECK_SEVERITY_extra7162="Medium" CHECK_ASFF_RESOURCE_TYPE_extra7162="AwsLogsLogGroup" CHECK_ALTERNATE_check7162="extra7162" CHECK_SERVICENAME_extra7162="cloudwatch" -CHECK_RISK_extra7162='If log groups have a low retention policy of less than 365 days, crucial logs and data can be lost' +CHECK_RISK_extra7162='If log groups have a low retention policy of less than 365 days; crucial logs and data can be lost' CHECK_REMEDIATION_extra7162='Add Log Retention policy of 365 days to log groups. This will persist logs and traces for a long time.' CHECK_DOC_extra7162='https://docs.aws.amazon.com/AWSCloudFormation/latest/UserGuide/AWS_Logs.html' CHECK_CAF_EPIC_extra7162='Data Retention' diff --git a/checks/check_extra726 b/checks/check_extra726 index ac61aaeab1..152beb756a 100644 --- a/checks/check_extra726 +++ b/checks/check_extra726 @@ -47,7 +47,7 @@ extra726(){ textInfo "$REGION: Trusted Advisor check $TA_CHECKS_NAME is in warning state $QUERY_TA_CHECK_RESULT" "$REGION" "$TA_CHECKS_NAME" ;; "not_available") - textInfo "$REGION: Trusted Advisor check $TA_CHECKS_NAME is in not_available state $QUERY_TA_CHECK_RESULT" "u$REGION" "$TA_CHECKS_NAME" + textInfo "$REGION: Trusted Advisor check $TA_CHECKS_NAME is in not_available state $QUERY_TA_CHECK_RESULT" "$REGION" "$TA_CHECKS_NAME" ;; "*") textFail "$REGION: Trusted Advisor check $TA_CHECKS_NAME is in unknown state $QUERY_TA_CHECK_RESULT" "$REGION" "$TA_CHECKS_NAME" diff --git a/checks/check_extra765 b/checks/check_extra765 index 34d417cda0..cb83105f46 100644 --- a/checks/check_extra765 +++ b/checks/check_extra765 @@ -50,7 +50,7 @@ extra765(){ textFail "$region: ECR repository $repo has scan on push disabled!" "$region" "$repo" ;; "None") - textInfo "$region: ECR repository $repo has no scanOnPush status, newer awscli needed" "$region" "$repo" + textInfo "$region: ECR repository $repo has no scanOnPush status: newer awscli needed" "$region" "$repo" ;; "*") textInfo "$region: ECR repository $repo has unknown scanOnPush status \"$SCAN_ENABLED\"" "$region" "$repo" diff --git a/checks/check_extra769 b/checks/check_extra769 index 6127c646e8..fe6600dcc5 100644 --- a/checks/check_extra769 +++ b/checks/check_extra769 @@ -27,7 +27,7 @@ extra769(){ for regx in $REGIONS; do LIST_OF_ACCESS_ANALYZERS=$($AWSCLI accessanalyzer list-analyzers $PROFILE_OPT --region $regx --query analyzers[*].arn --output text 2>&1) if [[ $(echo "$LIST_OF_ACCESS_ANALYZERS" | grep -i "argument command: Invalid choice") ]]; then - textInfo "$regx: list-analyzers not supported, newer awscli needed" "$regx" + textInfo "$regx: list-analyzers not supported: newer awscli needed" "$regx" continue fi if [[ $(echo "$LIST_OF_ACCESS_ANALYZERS" | grep -i "AccessDeniedException") ]]; then diff --git a/checks/check_extra794 b/checks/check_extra794 index ef6f2aeee5..1ed33f7a49 100644 --- a/checks/check_extra794 +++ b/checks/check_extra794 @@ -35,7 +35,7 @@ extra794(){ if [[ $(echo $TYPES | egrep "api.*audit.*authenticator.*controllerManager.*scheduler") ]]; then textPass "$regx: Control plane logging enabled and correctly configured for EKS cluster $CLUSTER" "$regx" "$CLUSTER" else - textFail "$regx: Control plane logging enabled, but not all log types collected for EKS cluster $CLUSTER" "$regx" "$CLUSTER" + textFail "$regx: Control plane logging enabled; not all log types collected for EKS cluster $CLUSTER" "$regx" "$CLUSTER" fi else textFail "$regx: Control plane logging is not enabled for EKS cluster $CLUSTER" "$regx" "$CLUSTER"