github.com/khulnasoft-lab/defsec@v1.0.5-0.20230827010352-5e9f46893d95/rules/cloud/policies/azure/storage/default_action_deny.tf.go (about)

     1  package storage
     2  
     3  var terraformDefaultActionDenyGoodExamples = []string{
     4  	`
     5   resource "azurerm_storage_account_network_rules" "good_example" {
     6     
     7     default_action             = "Deny"
     8     ip_rules                   = ["127.0.0.1"]
     9     virtual_network_subnet_ids = [azurerm_subnet.test.id]
    10     bypass                     = ["Metrics"]
    11   }
    12   `,
    13  }
    14  
    15  var terraformDefaultActionDenyBadExamples = []string{
    16  	`
    17   resource "azurerm_storage_account_network_rules" "bad_example" {
    18     
    19     default_action             = "Allow"
    20     ip_rules                   = ["127.0.0.1"]
    21     virtual_network_subnet_ids = [azurerm_subnet.test.id]
    22     bypass                     = ["Metrics"]
    23   }
    24   `,
    25  }
    26  
    27  var terraformDefaultActionDenyLinks = []string{
    28  	`https://registry.terraform.io/providers/hashicorp/azurerm/latest/docs/resources/storage_account_network_rules#default_action`,
    29  }
    30  
    31  var terraformDefaultActionDenyRemediationMarkdown = ``