feat(k8s): scan secrets (#2178)

This commit is contained in:
Jose Donizetti
2022-05-29 10:40:51 -03:00
committed by GitHub
parent 4ab696eaa2
commit 84af32a7fe
2 changed files with 15 additions and 3 deletions

View File

@@ -806,13 +806,17 @@ func NewPluginCommand() *cli.Command {
func NewK8sCommand() *cli.Command {
k8sSecurityChecksFlag := withValue(
securityChecksFlag,
fmt.Sprintf("%s,%s", types.SecurityCheckVulnerability, types.SecurityCheckConfig),
fmt.Sprintf(
"%s,%s,%s",
types.SecurityCheckVulnerability,
types.SecurityCheckConfig,
types.SecurityCheckSecret),
)
return &cli.Command{
Name: "kubernetes",
Aliases: []string{"k8s"},
Usage: "scan kubernetes vulnerabilities and misconfigurations",
Usage: "scan kubernetes vulnerabilities, secrets and misconfigurations",
CustomHelpTemplate: cli.CommandHelpTemplate + `EXAMPLES:
- cluster scanning:
$ trivy k8s --report summary