@@ -68,8 +68,6 @@ resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_hostname_con
6868}
6969```
7070
71-
72-
7371### CVE Risk acceptance
7472
7573``` terraform
@@ -152,6 +150,73 @@ resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_cve_package_
152150 stages = []
153151 expiration_date = "2025-01-02"
154152}
153+ ```
154+
155+ ### Rule risk acceptance
156+
157+ ``` terraform
158+ resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_globally" {
159+ rule_id = 12345
160+ description = "Accept risk for rule globally"
161+ reason = "Custom"
162+ stages = ["pipeline", "runtime"]
163+ expiration_date = "2025-01-02"
164+ }
165+
166+ resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_image_exact" {
167+ rule_id = 12345
168+ image = "docker.io/library/mysql:8.0"
169+ description = "Accept risk for MySQL 8.0 image"
170+ reason = "RiskAvoided"
171+ stages = ["pipeline"]
172+ }
173+
174+ resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_image_prefix" {
175+ rule_id = 12345
176+ image = "docker.io/company/backend:*"
177+ description = "Accept risk for backend images"
178+ reason = "RiskMitigated"
179+ stages = ["runtime"]
180+ expiration_date = "2025-01-02"
181+ }
182+
183+ resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_image_suffix" {
184+ rule_id = 12345
185+ image = "*:latest"
186+ description = "Accept risk for images tagged as 'latest'"
187+ reason = "RiskOwned"
188+ stages = []
189+ expiration_date = "2025-01-02"
190+ }
191+
192+ resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_image_contains" {
193+ rule_id = 12345
194+ image = "*redis*"
195+ description = "Accept risk for Redis images"
196+ reason = "RiskNotRelevant"
197+ stages = ["pipeline"]
198+ expiration_date = "2025-01-02"
199+ }
200+
201+ resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_hostname_exact" {
202+ rule_id = 12345
203+ hostname = "db-prod-01.mydomain.com"
204+ description = "Accept risk for production database host"
205+ reason = "RiskTransferred"
206+ stages = ["runtime"]
207+ expiration_date = "2025-01-02"
208+ }
209+
210+ resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_hostname_contains" {
211+ rule_id = 12345
212+ hostname_contains = "worker"
213+ description = "Accept risk for worker nodes"
214+ reason = "Custom"
215+ stages = []
216+ expiration_date = "2025-01-02"
217+ }
218+ ```
219+
155220## Argument Reference
156221
157222### Required Arguments
0 commit comments