github.com/khulnasoft-lab/defsec@v1.0.5-0.20230827010352-5e9f46893d95/rules/cloud/policies/aws/elasticsearch/enable_domain_encryption.tf.go (about)

     1  package elasticsearch
     2  
     3  var terraformEnableDomainEncryptionGoodExamples = []string{
     4  	`
     5   resource "aws_elasticsearch_domain" "good_example" {
     6     domain_name = "domain-foo"
     7   
     8     encrypt_at_rest {
     9       enabled = true
    10     }
    11   }
    12   `,
    13  }
    14  
    15  var terraformEnableDomainEncryptionBadExamples = []string{
    16  	`
    17   resource "aws_elasticsearch_domain" "bad_example" {
    18     domain_name = "domain-foo"
    19   
    20     encrypt_at_rest {
    21       enabled = false
    22     }
    23   }
    24   `,
    25  }
    26  
    27  var terraformEnableDomainEncryptionLinks = []string{
    28  	`https://registry.terraform.io/providers/hashicorp/aws/latest/docs/resources/elasticsearch_domain#encrypt_at_rest`,
    29  }
    30  
    31  var terraformEnableDomainEncryptionRemediationMarkdown = ``