mirror of
https://github.com/prowler-cloud/prowler.git
synced 2026-07-23 12:31:54 +00:00
da000b54ca
* fix(aws_profile_loader): New functions * fix(shellcheck): Temporary remove Shellcheck * fix(aws_cli_detector): new function * fix(jq_detector): New function * fix(os_detector): New function * fix(output_bucket): Output bucket input check in main * fix(python_detector): deleted unused python detector * fix(credentials): credentials check out of whoami * [break]refactor(main) * [BREAK] Get list of checks parsing all input options * [break]refactor(main): execute checks functions * [break]refactor(main): move functions to libs * fix(validations): custom check validation and typos * refactor(validate_options): Include comments * fix(custom_checks): Minor fixes * refactor(closing_files): include libraries * refactor(loader): Include ignored checks * refactor(main): Fix shellcheck * refactor(loader): beautify * refactor(monochrome): without variables * refactor(modes): MODES array not needed * refactor(whoami): get error from AWSCLI * refactor(secrets-detector) * refactor(secrets-detector) * fix(html_scoring): html scoring was fixed. * fix(load_checks_from_file) * fix(color-code): Print if not mono * fix(not extra): Fixed if EXCLUDE_CHECK_ID is empty * fix(IFS): Restore default IFS once modes are parsed * fix(bucket): validate before whoami * fix(bucket): validate before whoami Co-authored-by: n4ch04 <nachor1992@gmail.com> Co-authored-by: sergargar <sergio@verica.io> Co-authored-by: Nacho Rivera <59198746+n4ch04@users.noreply.github.com>
55 lines
1.7 KiB
Bash
55 lines
1.7 KiB
Bash
#!/usr/bin/env bash
|
|
|
|
# Prowler - the handy cloud security tool (copyright 2021) by Toni de la Fuente
|
|
#
|
|
# Licensed under the Apache License, Version 2.0 (the "License"); you may not
|
|
# use this file except in compliance with the License. You may obtain a copy
|
|
# of the License at http://www.apache.org/licenses/LICENSE-2.0
|
|
#
|
|
# Unless required by applicable law or agreed to in writing, software distributed
|
|
# under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR
|
|
# CONDITIONS OF ANY KIND, either express or implied. See the License for the
|
|
# specific language governing permissions and limitations under the License.
|
|
|
|
copyToS3() {
|
|
# Prowler will copy each format to its own folder in S3, that is for better handling
|
|
# and processing by Quicksight or others.
|
|
# Also, check if -F was introduced
|
|
if [ -n "${OUTPUT_FILE_NAME+x}" ]; then
|
|
OUTPUT_PATH="${OUTPUT_FILE_NAME}"
|
|
else
|
|
OUTPUT_PATH="$OUTPUT_DIR/prowler-output-${ACCOUNT_NUM}-${OUTPUT_DATE}"
|
|
fi
|
|
|
|
OIFS="${IFS}"
|
|
IFS=','
|
|
for MODE_TYPE in ${MODE}
|
|
do
|
|
IFS="${OIFS}"
|
|
case ${MODE_TYPE} in
|
|
csv)
|
|
s3cp "${OUTPUT_PATH}" "${EXTENSION_CSV}"
|
|
;;
|
|
html)
|
|
s3cp "${OUTPUT_PATH}" "${EXTENSION_HTML}"
|
|
;;
|
|
json)
|
|
s3cp "${OUTPUT_PATH}" "${EXTENSION_JSON}"
|
|
;;
|
|
json-asff)
|
|
s3cp "${OUTPUT_PATH}" "${EXTENSION_ASFF}"
|
|
;;
|
|
*)
|
|
echo "$OPTRED ERROR!$OPTNORMAL - Invalid output format copying to S3. Use -h for help."
|
|
exit 1
|
|
;;
|
|
esac
|
|
done
|
|
}
|
|
|
|
s3cp(){
|
|
OUTPUT_PATH="${1}"
|
|
EXTENSION="${2}"
|
|
"${AWSCLI}" ${PROFILE_OPT} s3 cp "${OUTPUT_PATH}.${EXTENSION}" s3://"${OUTPUT_BUCKET}"/${EXTENSION}/ --acl bucket-owner-full-control
|
|
}
|