diff --git a/.trivyignore.yaml b/.trivyignore.yaml index 1cc78c2..ccfaa37 100644 --- a/.trivyignore.yaml +++ b/.trivyignore.yaml @@ -39,6 +39,7 @@ misconfigurations: - id: AVD-AWS-0031 - id: AVD-AWS-0039 - id: AVD-AWS-0057 + - id: AVD-AWS-0136 secrets: diff --git a/modules/backup/main.tf b/modules/backup/main.tf index b2a0456..8a57875 100644 --- a/modules/backup/main.tf +++ b/modules/backup/main.tf @@ -115,7 +115,7 @@ resource "aws_backup_selection" "non_production" { } # SNS topic -#trivy:ignore:avd-aws-0136 +#trivy:ignore:AVD-AWS-0136 resource "aws_sns_topic" "backup_failure_topic" { kms_master_key_id = var.sns_backup_topic_key name = "backup_failure_topic" diff --git a/modules/config/main.tf b/modules/config/main.tf index 5c13c12..319bf65 100644 --- a/modules/config/main.tf +++ b/modules/config/main.tf @@ -35,6 +35,7 @@ resource "aws_config_configuration_recorder_status" "default" { # Create an SNS topic # AWS-managed account key appropriate for default topic # tfsec:ignore:aws-sns-topic-encryption-use-cmk +#trivy:ignore:AVD-AWS-0136 resource "aws_sns_topic" "default" { name = "config" kms_master_key_id = "alias/aws/sns"