From 32b443a5b3a1996dd47a288d3a7c602b8bffebed Mon Sep 17 00:00:00 2001 From: "prisma-cloud-devsecops[bot]" <89982750+prisma-cloud-devsecops[bot]@users.noreply.github.com> Date: Thu, 28 Mar 2024 09:27:33 +0000 Subject: [PATCH] Prisma Cloud has found BC_AWS_GENERAL_203 and 2 other error(s) --- terraform/aws/ec2.tf | 1 + terraform/aws/neptune.tf | 2 ++ 2 files changed, 3 insertions(+) diff --git a/terraform/aws/ec2.tf b/terraform/aws/ec2.tf index 00e0ba940f..16f6c37143 100644 --- a/terraform/aws/ec2.tf +++ b/terraform/aws/ec2.tf @@ -48,6 +48,7 @@ resource "aws_ebs_volume" "web_host_storage" { git_repo = "terragoat" yor_trace = "c5509daf-10f0-46af-9e03-41989212521d" }) + encrypted = true } resource "aws_ebs_snapshot" "example_snapshot" { diff --git a/terraform/aws/neptune.tf b/terraform/aws/neptune.tf index 7dd4a0d138..2d02e050fa 100644 --- a/terraform/aws/neptune.tf +++ b/terraform/aws/neptune.tf @@ -17,6 +17,7 @@ resource "aws_neptune_cluster" "default" { git_repo = "terragoat" yor_trace = "0d4cbb85-73ed-4ca0-b1da-296e4185f34e" } + kms_key_arn = "CKV_ANY" } resource "aws_neptune_cluster_instance" "default" { @@ -41,5 +42,6 @@ resource "aws_neptune_cluster_instance" "default" { resource "aws_neptune_cluster_snapshot" "default" { db_cluster_identifier = aws_neptune_cluster.default.id db_cluster_snapshot_identifier = "resourcetestsnapshot1" + storage_encrypted = true }