Add dynatrace scan hook #283
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR:
The scan hook:
zap_pass_count,zap_warn_countandzap_fail_countlog.zap.pass_count,log.zap.warn_countandlog.zap.fail_countINFOevents to theAPPLICATIONentity forZAP scan passedentitySelectorgiven by the user).0which means any ZAP failures are considered as a problem (and a ticket is raised).zap_get_alerts_wrapand pushes log lines via log ingest for each ZAP finding. If ZAP risk isMedium, log line status isWARN. If ZAP risk isHigh, log line status isERROR.pre_exitto pushfail_count,warn_countandpass_countas custom metrics (via log ingest).ERRORevents to theAPPLICATIONentity forVulnerable applicationsERRORlog line will be pushedSigned-off-by: agardnerit adam@agardner.net