diff --git a/assets/queries/terraform/kubernetes/workload_host_port_not_specified/query.rego b/assets/queries/terraform/kubernetes/workload_host_port_not_specified/query.rego index d325bde7233..0bc68ffb437 100644 --- a/assets/queries/terraform/kubernetes/workload_host_port_not_specified/query.rego +++ b/assets/queries/terraform/kubernetes/workload_host_port_not_specified/query.rego @@ -10,15 +10,15 @@ CxPolicy[result] { path := checkPath(resource) - not common_lib.valid_key(path.port, "host_port") + common_lib.valid_key(path.port, "host_port") result := { "documentId": input.document[i].id, "resourceType": x, "resourceName": tf_lib.get_resource_name(resource, name), "searchKey": sprintf("%s[%s].%s.port", [x, name, resource_prefix]), "issueType": "IncorrectValue", - "keyExpectedValue": "Attribute 'host_port' should be defined and not null", - "keyActualValue": "Attribute 'host_port' is undefined or null", + "keyExpectedValue": "Attribute 'host_port' should not be defined", + "keyActualValue": "Attribute 'host_port' is defined", } } diff --git a/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/negative1.tf b/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/negative1.tf index 44cb56eb518..13632a341ec 100644 --- a/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/negative1.tf +++ b/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/negative1.tf @@ -15,7 +15,6 @@ resource "kubernetes_pod" "test" { port { container_port = 8080 - host_port = 2 } liveness_probe { diff --git a/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/negative2.tf b/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/negative2.tf index 1bc531caa49..a3a83eab050 100644 --- a/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/negative2.tf +++ b/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/negative2.tf @@ -40,7 +40,6 @@ resource "kubernetes_deployment" "example" { } port { container_port = 8080 - host_port = 2 } liveness_probe { diff --git a/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/positive1.tf b/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/positive1.tf index 13632a341ec..44cb56eb518 100644 --- a/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/positive1.tf +++ b/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/positive1.tf @@ -15,6 +15,7 @@ resource "kubernetes_pod" "test" { port { container_port = 8080 + host_port = 2 } liveness_probe { diff --git a/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/positive2.tf b/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/positive2.tf index a3a83eab050..1bc531caa49 100644 --- a/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/positive2.tf +++ b/assets/queries/terraform/kubernetes/workload_host_port_not_specified/test/positive2.tf @@ -40,6 +40,7 @@ resource "kubernetes_deployment" "example" { } port { container_port = 8080 + host_port = 2 } liveness_probe {