Skip to content

bug(scan): ECS Task Definition Volume Not Encrypted - Is encrypted #7422

@scott2889

Description

@scott2889
  • Describe in details what the problem is

A critical vulnerability is being raised telling us 'AWS ECS Task Definition EFS data in transit between AWS ECS host and AWS EFS server should be encrypted' - however the data IS encrypted

  • Attach a log file with relevant data preferably in DEBUG level (--log-level=DEBUG)

SAST report shows the exact error is AWS ECS Task Definition EFS data in transit between AWS ECS host and AWS EFS server should be encrypted
Its specifically referring to the attribute: transit_encryption = "ENABLED"
This attribute IS enabled

  • Attach the scanned sample files, anonymize the data if the original file cannot be provided
  • When attaching files to the issue make sure they are properly formatted

Expected Behavior

For this not to be reported as a vulnerability

Actual Behavior

reported as a vulnerability

Steps to Reproduce the Problem

Specifications

(N/A if not applicable)

  • Version:
  • Platform: GitLab
  • Subsystem: CI/CD Pipeline

Metadata

Metadata

Assignees

No one assigned

    Labels

    awsPR related with AWS CloudbugSomething isn't workingcommunityCommunity contribution

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions