Replies: 1 comment 1 reply
-
Hi, Thanks for reaching out! We have an existing issue for this here bottlerocket-os/bottlerocket-core-kit#540 and for now this is expected behaviour. We're working on updating the benchmark in bottlerocket-os/bottlerocket-core-kit#665. Our current recommendation is to work with an auditor to log an exception for this while we work on the update. |
Beta Was this translation helpful? Give feedback.
1 reply
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
-
In my terraform I have this setting
I run
apiclient report cis -l 2
all pass pass except[FAIL] 3.4.1.1 Ensure IPv4 default deny firewall policy (Automatic)
Output
I am using the VPC CNI.
Journal logs
Any ideas on why the [FAIL] 3.4.1.1 Ensure IPv4 default deny firewall policy (Automatic) check is not passing?
Beta Was this translation helpful? Give feedback.
All reactions