diff --git a/pkg/policies/opa/rego/gcp/google_compute_instance/accurics.gcp.NS.130.json b/pkg/policies/opa/rego/gcp/google_compute_instance/accurics.gcp.NS.130.json index 599b47ecc..24e1d0f27 100755 --- a/pkg/policies/opa/rego/gcp/google_compute_instance/accurics.gcp.NS.130.json +++ b/pkg/policies/opa/rego/gcp/google_compute_instance/accurics.gcp.NS.130.json @@ -1,13 +1,10 @@ { "name": "checkIpForward", "file": "checkIpForward.rego", - "template_args": { - "prefix":"", - "suffix":"" - }, + "template_args": null, "severity": "MEDIUM", "description": "Ensure IP forwarding is not enabled on Instances.", "reference_id": "accurics.gcp.NS.130", "category": "Network Security", "version": 1 -} +} \ No newline at end of file diff --git a/pkg/policies/opa/rego/gcp/google_compute_instance/checkIpForward.rego b/pkg/policies/opa/rego/gcp/google_compute_instance/checkIpForward.rego index 66860d371..8f5b59734 100755 --- a/pkg/policies/opa/rego/gcp/google_compute_instance/checkIpForward.rego +++ b/pkg/policies/opa/rego/gcp/google_compute_instance/checkIpForward.rego @@ -1,8 +1,7 @@ package accurics -{{.prefix}}{{.name}}{{.suffix}}[api.id] +checkIpForward[api.id] { api := input.google_compute_instance[_] - api.config.can_ip_forward == true -} - + not api.config.can_ip_forward == true +} \ No newline at end of file