secureCodeBox/secureCodeBox

View on GitHub
scanners/zap-advanced/cascading-rules/https.yaml

Summary

Maintainability
Test Coverage
# SPDX-FileCopyrightText: the secureCodeBox authors
#
# SPDX-License-Identifier: Apache-2.0

apiVersion: "cascading.securecodebox.io/v1"
kind: CascadingRule
metadata:
  name: "zap-advanced-https"
  labels:
    securecodebox.io/invasive: non-invasive
    securecodebox.io/intensive: medium
spec:
  matches:
    anyOf:
      - category: "Open Port"
        attributes:
          service: "https*"
          state: open
  scanSpec:
    scanType: "zap-advanced-scan"
    parameters: ["-t", "https://{{$.hostOrIP}}:{{attributes.port}}"]