Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Report readability: Usage section #12

Closed
andresriancho opened this issue Sep 11, 2018 · 1 comment
Closed

Report readability: Usage section #12

andresriancho opened this issue Sep 11, 2018 · 1 comment
Labels
component-provider-aws Affects AWS provider component-UI Affects UI enhancement New feature or request

Comments

@andresriancho
Copy link

One of the findings is titled MySQL port open to all:

screenshot from 2018-09-11 13-46-56

The Usage section is empty, meaning that (I assumed but had to confirm) the security group is not used anywhere.

In order to ease the report review, it would be nice to see "No usages of this security group were found" in that section. It makes it explicit and easier to understand.

Also, if the SG is insecure (mysql open to all) but is not in use, then its risk should be warning instead of danger.

@x4v13r64
Copy link
Collaborator

I agree, the UI is not very verbose and in many cases (as this one) it should be more explicit.

As for the second point that would be complicated due to how findings are implemented in Scout2, but could be done by having 2 rules.

@x4v13r64 x4v13r64 transferred this issue from nccgroup/Scout2 Nov 14, 2018
@x4v13r64 x4v13r64 added enhancement New feature or request component-provider-aws Affects AWS provider component-UI Affects UI labels Nov 14, 2018
@Aboisier Aboisier added this to To do in Scout Suite Jan 15, 2019
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
component-provider-aws Affects AWS provider component-UI Affects UI enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

2 participants