@@ -67,9 +67,6 @@ resource "sysdig_secure_drift_policy" "sample" {
67
67
prohibited_binaries {
68
68
items = ["/usr/bin/curl"]
69
69
}
70
- process_based_exceptions {
71
- items = ["/usr/bin/curl"]
72
- }
73
70
}
74
71
75
72
actions {
@@ -96,16 +93,20 @@ resource "sysdig_secure_drift_policy" "sample" {
96
93
description = "Test Drift Rule Description"
97
94
98
95
enabled = true
96
+ use_regex = true
99
97
100
98
exceptions {
101
99
items = ["/usr/bin/sh"]
102
100
}
103
101
prohibited_binaries {
104
102
items = ["/usr/bin/curl"]
105
103
}
106
- process_based_exceptions {
104
+ process_based_exceptions {
107
105
items = ["/usr/bin/curl"]
108
- }
106
+ }
107
+ process_based_prohibited_binaries {
108
+ items = ["/usr/bin/sh"]
109
+ }
109
110
}
110
111
111
112
actions {
@@ -138,16 +139,17 @@ resource "sysdig_secure_drift_policy" "sample" {
138
139
description = "Test Drift Rule Description"
139
140
140
141
enabled = true
142
+ use_regex = true
141
143
142
144
exceptions {
143
145
items = ["/usr/bin/sh"]
144
146
}
145
147
prohibited_binaries {
146
148
items = ["/usr/bin/curl"]
147
149
}
148
- process_based_exceptions {
150
+ process_based_exceptions {
149
151
items = ["/usr/bin/curl"]
150
- }
152
+ }
151
153
}
152
154
153
155
actions {}
@@ -177,9 +179,12 @@ resource "sysdig_secure_drift_policy" "sample" {
177
179
prohibited_binaries {
178
180
items = ["/usr/bin/curl"]
179
181
}
180
- process_based_exceptions {
182
+ process_based_exceptions {
181
183
items = ["/usr/bin/curl"]
182
- }
184
+ }
185
+ process_based_prohibited_binaries {
186
+ items = ["/usr/bin/sh"]
187
+ }
183
188
}
184
189
185
190
actions {
@@ -227,19 +232,23 @@ resource "sysdig_secure_drift_policy" "sample" {
227
232
228
233
rule {
229
234
description = "Test Drift Rule Description"
230
- mounted_volume_drift_enabled = true
235
+
231
236
enabled = true
237
+ mounted_volume_drift_enabled = true
232
238
233
239
exceptions {
234
240
items = ["/usr/bin/sh"]
235
241
}
236
242
prohibited_binaries {
237
243
items = ["/usr/bin/curl"]
238
244
}
239
- process_based_exceptions {
245
+ process_based_exceptions {
240
246
items = ["/usr/bin/curl"]
241
247
}
242
- }
248
+ process_based_prohibited_binaries {
249
+ items = ["/usr/bin/sh"]
250
+ }
251
+ }
243
252
}
244
253
` , name )
245
254
}
0 commit comments