Skip to main content
Version: v0.19.0

exposed-ports-whitelist

Image exposes permitted ports.

ProviderLevelTags
skopeoWarningsecurity

Parameters

NameDefault ValueDescription
allowed_ports['80', '443']n/a

Messages

TypeMessage
PassAll exposed ports are allowed.
FailImage exposes unauthorized ports: ${results.skopeo.platforms.0.exposed_ports}.

Playbook Example

rules:
- provider: skopeo
rule: exposed-ports-whitelist
options:
allowed_ports:
- "80"
- "443"

Condition

{
"subset": [
{
"var": "results.skopeo.platforms.0.exposed_ports"
},
{
"var": "rule.params.allowed_ports"
}
]
}