github.com/khulnasoft-lab/defsec@v1.0.5-0.20230827010352-5e9f46893d95/rules/cloud/policies/aws/elasticsearch/use_secure_tls_policy.tf.go (about)

     1  package elasticsearch
     2  
     3  var terraformUseSecureTlsPolicyGoodExamples = []string{
     4  	`
     5   resource "aws_elasticsearch_domain" "good_example" {
     6     domain_name = "domain-foo"
     7   
     8     domain_endpoint_options {
     9       enforce_https = true
    10       tls_security_policy = "Policy-Min-TLS-1-2-2019-07"
    11     }
    12   }
    13   `,
    14  }
    15  
    16  var terraformUseSecureTlsPolicyBadExamples = []string{
    17  	`
    18   resource "aws_elasticsearch_domain" "bad_example" {
    19     domain_name = "domain-foo"
    20   
    21     domain_endpoint_options {
    22       enforce_https = true
    23       tls_security_policy = "Policy-Min-TLS-1-0-2019-07"
    24     }
    25   }
    26   `,
    27  }
    28  
    29  var terraformUseSecureTlsPolicyLinks = []string{
    30  	`https://registry.terraform.io/providers/hashicorp/aws/latest/docs/resources/elasticsearch_domain#tls_security_policy`,
    31  }
    32  
    33  var terraformUseSecureTlsPolicyRemediationMarkdown = ``