Prowler step configuration
Scan configurations with Prowler.
You can scan your configurations and ingest results from Prowler. The default workflow is to add a Prowler step to a Build or Security stage and configure it as described below.
Important notes for running Prowler scans in STO
Root access requirements
For more information
Prowler step settings for STO
Scan
Scan Mode
Scan Configuration
Select the compliance framework to apply when running the scan:
Default
Hipaa
GDPR
Exclude Extras
Target
Type
Name
Variant
Workspace
Authentication
Settings for the AWS account to use when running an orchestration scan.
Access ID
Access Token
Access Region
The AWS region of the configuration to scan.
Ingestion file
Log Level
Additional CLI flags
You can use this field to run the prowler scanner with specific command-line arguments. For example, this argument excludes specific checks from a scan:
-excluded-checks s3_bucket_public_access
Fail on Severity
Settings
Additional Configuration
Advanced settings
PreviousPrisma Cloud (formerly Twistlock) step configuration
NextQualys Web Application Scanning (WAS) step configuration
Last updated
Was this helpful?