Security Contact Email

  • Query id: 34664094-59e0-4524-b69f-deaa1a68cce3
  • Query name: Security Contact Email
  • Platform: Terraform
  • Severity: Medium
  • Category: Best Practices
  • CWE: 778
  • URL: Github

Description

Security Contact Email should be defined
Documentation

Code samples

Code samples with security vulnerabilities

Positive test num. 1 - tf file
resource "azurerm_security_center_contact" "positive" {
  phone = "+1-555-555-5555"

  alert_notifications = true
  alerts_to_admins    = true
}

Code samples without security vulnerabilities

Negative test num. 1 - tf file
resource "azurerm_security_center_contact" "negative" {
  email = "contact@example.com"
  phone = "+1-555-555-5555"

  alert_notifications = true
  alerts_to_admins    = true
}