Getting started with Snyk Infrastructure as Code (IaC)
Get started with Snyk IaC to inspect, find and fix issues in configuration files for Terraform or Kubernetes (including Helm) environments. For more information, see Scan Kubernetes configuration files and Scan Terraform files.
Import projects to test with Snyk, by choosing repositories for Snyk to test and monitor.
1.
Select Projects from Snyk.io.
2.
Select the tool to add the project from (for example GitHub).
3.
In Personal and Organization repositories, select the repositories to use.
4.
Click Add selected repositories to import the selected repositories into your projects.
5.
A progress bar appears: click View log to see import log results (you can scan both Kubernetes and Terraform files simultaneously)
6.
Project import completes.
Currently Snyk Infrastructure as Code projects has a recurring test default interval of 1 week. The default interval is changed under project settings.
Stage 2: View configuration file issues
View results for configuration files in imported projects.
Select Projects, then click on the imported project entry, to see information for scanned configuration files, including the number of high, medium and low severity issues found. For example:
(Issues are sorted into project types: Helm, Kubernetes and Terraform.)
Click on a project to see more information and details of the issues in a configuration file: