Prisma Cloud Discussions
Share ideas and post questions related to Prisma Cloud — the industry's most comprehensive cloud native security platform — and the compute capabilities available within it in this forum.
cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Prisma Cloud Discussions
Share ideas and post questions related to Prisma Cloud — the industry's most comprehensive cloud native security platform — and the compute capabilities available within it in this forum.
About Prisma Cloud Discussions
Share ideas and post questions related to Prisma Cloud — the industry's most comprehensive cloud native security platform — and the compute capabilities available within it in this forum.

Discussions

Welcome to the Prisma Cloud Discussions!

To make this forum valuable and enjoyable for everyone, please review the following guidelines before participating:

 

Rules and Best Practices

 

  1. Be Respectful: Treat fellow community members with professionalism and courtesy. Constructive discussion
...

JayGolf by Community Team Member
  • 1079 Views
  • 1 replies
  • 1 Likes

Gitlab CI/CD + Prisma Cloud invalid credentials

Hello, 
I've been trying to do an integration with Gitlab CI/CD through the Prisma Cloud extension, in order to perform scans

I used this documentation as a guide. Also I included this yml file in the pipeline.

 

i got the following error: /tmp/twistc

...

DeepinScreenshot_Seleccionar área_20210114180402.png
Gidiar by L0 Member
  • 4106 Views
  • 1 replies
  • 0 Likes

IAM PassRole RQL with Conditionals

Hello!  I'm attempting to write some RQL to detect policies with the following permissions and struggling a bit.

 

Action: "iam:PassRole"

Effect: "Allow"

Resource: "*"

 

Now, in general this isn't too bad to figure out.  The RQL below accomplishes this nic

...

Issue in reported vulnerability

Hi Prismacloud team,

We are getting below three golang vulnerabilities in all images and hosts which don't have golang installed.

These go vulnerabilities are reported even in all the node based docker images and also in all hosts which don’t have any

...

NSrinivasan_0-1644498597803.png

Is this CVE for node.js or next.js?

My console is flagging node.js v16.14.0 with CVE-2021-43803 which appears to be targeting Next.js instead. I checked the CVE and it looks like it was recently updated from OR to and AND rule. Could this be an outdated rule? My intelligence stream is

...

  • 464 Posts
  • 59 Subscriptions