Skip to content

Commit 1e2cc6b

Browse files
committed
fix(docs): add again the rule risk acceptance
1 parent 98b4bf3 commit 1e2cc6b

File tree

1 file changed

+67
-2
lines changed

1 file changed

+67
-2
lines changed

website/docs/r/secure_vulnerability_accept_risk.md

Lines changed: 67 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -68,8 +68,6 @@ resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_hostname_con
6868
}
6969
```
7070

71-
72-
7371
### CVE Risk acceptance
7472

7573
```terraform
@@ -152,6 +150,73 @@ resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_cve_package_
152150
stages = []
153151
expiration_date = "2025-01-02"
154152
}
153+
```
154+
155+
### Rule risk acceptance
156+
157+
```terraform
158+
resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_globally" {
159+
rule_id = 12345
160+
description = "Accept risk for rule globally"
161+
reason = "Custom"
162+
stages = ["pipeline", "runtime"]
163+
expiration_date = "2025-01-02"
164+
}
165+
166+
resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_image_exact" {
167+
rule_id = 12345
168+
image = "docker.io/library/mysql:8.0"
169+
description = "Accept risk for MySQL 8.0 image"
170+
reason = "RiskAvoided"
171+
stages = ["pipeline"]
172+
}
173+
174+
resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_image_prefix" {
175+
rule_id = 12345
176+
image = "docker.io/company/backend:*"
177+
description = "Accept risk for backend images"
178+
reason = "RiskMitigated"
179+
stages = ["runtime"]
180+
expiration_date = "2025-01-02"
181+
}
182+
183+
resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_image_suffix" {
184+
rule_id = 12345
185+
image = "*:latest"
186+
description = "Accept risk for images tagged as 'latest'"
187+
reason = "RiskOwned"
188+
stages = []
189+
expiration_date = "2025-01-02"
190+
}
191+
192+
resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_image_contains" {
193+
rule_id = 12345
194+
image = "*redis*"
195+
description = "Accept risk for Redis images"
196+
reason = "RiskNotRelevant"
197+
stages = ["pipeline"]
198+
expiration_date = "2025-01-02"
199+
}
200+
201+
resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_hostname_exact" {
202+
rule_id = 12345
203+
hostname = "db-prod-01.mydomain.com"
204+
description = "Accept risk for production database host"
205+
reason = "RiskTransferred"
206+
stages = ["runtime"]
207+
expiration_date = "2025-01-02"
208+
}
209+
210+
resource "sysdig_secure_vulnerability_accept_risk" "accept_resource_rule_hostname_contains" {
211+
rule_id = 12345
212+
hostname_contains = "worker"
213+
description = "Accept risk for worker nodes"
214+
reason = "Custom"
215+
stages = []
216+
expiration_date = "2025-01-02"
217+
}
218+
```
219+
155220
## Argument Reference
156221

157222
### Required Arguments

0 commit comments

Comments
 (0)