Skip to content

Latest commit

 

History

History
37 lines (22 loc) · 2.29 KB

File metadata and controls

37 lines (22 loc) · 2.29 KB

Manage IaC+ and cloud rules

{% hint style="info" %} The name of the rule settings page differs based on the products enabled for your Organization. {% endhint %}

If Snyk IaC+ is enabled for your Organization, you can view a list of all Snyk Cloud and IaC rules on the Organization Settings > Snyk Cloud & IaC page.

Each rule links to detailed fix advice on the Cloud Security Rules site.

A rule has a Cloud tag if it applies to Snyk cloud context and an IaC tag if it applies to Snyk IaC. Most rules apply to both. Exceptions include cloud-only rules that check for missing resources, such as SNYK-CC-00168, "CloudWatch log metric filter and alarm should be set for Config configuration changes."

The Snyk Cloud and IaC settings page

The Snyk Cloud and IaC settings page

Set custom severity level

To set a custom severity level for a rule:

  1. Navigate to Settings > Snyk Cloud & IaC.
  2. In the Severity settings section, select the tab for the desired cloud provider.
  3. Find the rule you want to update and select the new severity level from the drop-down menu:

Select the new rule severity level from the drop-down menu

Select the new rule severity level from the drop-down menu

Changes take effect for an environment after its next scan.

To reset all custom severities, select Reset Custom Settings.

Filter rules by cloud or IaC+ area

{% hint style="info" %} This section applies to Organizations with both cloud and IaC+ enabled, or IaC+ only. {% endhint %}

By default, all rules are shown. Under the Product Area section, you can uncheck the Cloud box to hide Cloud-only rules, or the IaC box to hide IaC-only rules.

The Product Area section allows you to filter rules by product area

The Product Area section allows you to filter rules by product area