Explorar el Código

Merge pull request #234 from mdr-engineering/hotfix/ftd_MSOCI-1846_WhoopsNoVPNToNessusManager

Allow VPN to Nessus Manager
Frederick Damstra hace 4 años
padre
commit
4404253102
Se han modificado 1 ficheros con 1 adiciones y 1 borrados
  1. 1 1
      base/nessus/instance_nessus_manager/securitygroup-server.tf

+ 1 - 1
base/nessus/instance_nessus_manager/securitygroup-server.tf

@@ -20,7 +20,7 @@ resource "aws_security_group" "nessus_manager" {
 resource "aws_security_group_rule" "nessus_manager_inbound_nessus" {
   security_group_id        = aws_security_group.nessus_manager.id
   type                     = "ingress"
-  cidr_blocks              = var.cidr_map["vpc-private-services"] # Nessus Security Center
+  cidr_blocks              = concat(var.cidr_map["vpc-private-services"], var.cidr_map["vpc-access"]) # Nessus Security Center, VPN
   from_port                = 8834
   to_port                  = 8834 # no 8835 according to https://docs.tenable.com/nessusagent/Content/RequirementsDataflow.htm
   protocol                 = "tcp"