IaC Scanner Configuration

IaC Scanner Configuration

The IaC Flaws Scanner is configured in the YAML file conf/xygeni.iac.yml.

IaC Detectors Configuration

Detectors are configured with different YAML files located under the conf/iac directory of the xygeni scanner. There is a sample _template.yml_ file that could be used for creating your own detectors.

circle-info

To avoid scanner updates overwriting your configurations, you may define a directory where custom detectors could be loaded with the --custom-detectors-dir command-line argument.

IaC Detectors

The following formats are supported, among others:

circle-info

Some detectors use the Xygeni Policy Language (XYPOL)arrow-up-right for declaring what is considered a flaw. Useful for adding custom flaw detectors.

Please read the documentation on IaC detectors available.

Last updated