Files
prowler/include/outputs_bucket
T
Pepe Fagoaga da000b54ca refactor(Prowler): Main logic refactor (#1189)
* fix(aws_profile_loader): New functions

* fix(shellcheck): Temporary remove Shellcheck

* fix(aws_cli_detector): new function

* fix(jq_detector): New function

* fix(os_detector): New function

* fix(output_bucket): Output bucket input check in main

* fix(python_detector): deleted unused python detector

* fix(credentials): credentials check out of whoami

* [break]refactor(main)

* [BREAK] Get list of checks parsing all input options

* [break]refactor(main): execute checks functions

* [break]refactor(main): move functions to libs

* fix(validations): custom check validation and typos

* refactor(validate_options): Include comments

* fix(custom_checks): Minor fixes

* refactor(closing_files): include libraries

* refactor(loader): Include ignored checks

* refactor(main): Fix shellcheck

* refactor(loader): beautify

* refactor(monochrome): without variables

* refactor(modes): MODES array not needed

* refactor(whoami): get error from AWSCLI

* refactor(secrets-detector)

* refactor(secrets-detector)

* fix(html_scoring): html scoring was fixed.

* fix(load_checks_from_file)

* fix(color-code): Print if not mono

* fix(not extra): Fixed if EXCLUDE_CHECK_ID is empty

* fix(IFS): Restore default IFS once modes are parsed

* fix(bucket): validate before whoami

* fix(bucket): validate before whoami

Co-authored-by: n4ch04 <nachor1992@gmail.com>
Co-authored-by: sergargar <sergio@verica.io>
Co-authored-by: Nacho Rivera <59198746+n4ch04@users.noreply.github.com>
2022-06-13 17:34:31 +02:00

55 lines
1.7 KiB
Bash

#!/usr/bin/env bash
# Prowler - the handy cloud security tool (copyright 2021) by Toni de la Fuente
#
# Licensed under the Apache License, Version 2.0 (the "License"); you may not
# use this file except in compliance with the License. You may obtain a copy
# of the License at http://www.apache.org/licenses/LICENSE-2.0
#
# Unless required by applicable law or agreed to in writing, software distributed
# under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR
# CONDITIONS OF ANY KIND, either express or implied. See the License for the
# specific language governing permissions and limitations under the License.
copyToS3() {
# Prowler will copy each format to its own folder in S3, that is for better handling
# and processing by Quicksight or others.
# Also, check if -F was introduced
if [ -n "${OUTPUT_FILE_NAME+x}" ]; then
OUTPUT_PATH="${OUTPUT_FILE_NAME}"
else
OUTPUT_PATH="$OUTPUT_DIR/prowler-output-${ACCOUNT_NUM}-${OUTPUT_DATE}"
fi
OIFS="${IFS}"
IFS=','
for MODE_TYPE in ${MODE}
do
IFS="${OIFS}"
case ${MODE_TYPE} in
csv)
s3cp "${OUTPUT_PATH}" "${EXTENSION_CSV}"
;;
html)
s3cp "${OUTPUT_PATH}" "${EXTENSION_HTML}"
;;
json)
s3cp "${OUTPUT_PATH}" "${EXTENSION_JSON}"
;;
json-asff)
s3cp "${OUTPUT_PATH}" "${EXTENSION_ASFF}"
;;
*)
echo "$OPTRED ERROR!$OPTNORMAL - Invalid output format copying to S3. Use -h for help."
exit 1
;;
esac
done
}
s3cp(){
OUTPUT_PATH="${1}"
EXTENSION="${2}"
"${AWSCLI}" ${PROFILE_OPT} s3 cp "${OUTPUT_PATH}.${EXTENSION}" s3://"${OUTPUT_BUCKET}"/${EXTENSION}/ --acl bucket-owner-full-control
}