Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Feat/apc cluster convert to component #9736

Draft
wants to merge 5 commits into
base: main
Choose a base branch
from

Conversation

AntFMoJ
Copy link
Contributor

@AntFMoJ AntFMoJ commented Feb 25, 2025

This pull request:

Signed off by: Anthony Fitzroy anthony.fitzroy@justice.gov.uk

@github-actions github-actions bot added environments-repository Used to exclude PRs from this repo in our Slack PR update github-workflow labels Feb 25, 2025
Copy link
Contributor

Trivy Scan Failed

Show Output ```hcl

Trivy will check the following folders:
terraform/environments/analytical-platform-compute
terraform/environments/analytical-platform-compute/cluster
terraform/environments/analytical-platform-compute


Running Trivy in terraform/environments/analytical-platform-compute
2025-02-25T15:06:09Z INFO [vulndb] Need to update DB
2025-02-25T15:06:09Z INFO [vulndb] Downloading vulnerability DB...
2025-02-25T15:06:09Z INFO [vulndb] Downloading artifact... repo="public.ecr.aws/aquasecurity/trivy-db:2"
2025-02-25T15:06:11Z INFO [vulndb] Artifact successfully downloaded repo="public.ecr.aws/aquasecurity/trivy-db:2"
2025-02-25T15:06:11Z INFO [vuln] Vulnerability scanning is enabled
2025-02-25T15:06:11Z INFO [misconfig] Misconfiguration scanning is enabled
2025-02-25T15:06:11Z INFO [misconfig] Need to update the built-in checks
2025-02-25T15:06:11Z INFO [misconfig] Downloading the built-in checks...
162.46 KiB / 162.46 KiB [------------------------------------------------------] 100.00% ? p/s 100ms2025-02-25T15:06:12Z INFO [secret] Secret scanning is enabled
2025-02-25T15:06:12Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-25T15:06:12Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-25T15:06:13Z INFO [terraform scanner] Scanning root module file_path="."
2025-02-25T15:06:13Z WARN [terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly. module="root" variables="networking"
2025-02-25T15:06:13Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.transit_gateway_routes" value="cty.NilVal"
2025-02-25T15:06:25Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:29Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/main.tf:69"
2025-02-25T15:06:29Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access-to-cidr" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/main.tf:70"
2025-02-25T15:06:29Z INFO [terraform executor] Ignore finding rule="aws-ec2-no-public-egress-sgr" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/node_groups.tf:247"
2025-02-25T15:06:29Z WARN [pip] Unable to find python site-packages directory. License detection is skipped. err="site-packages directory not found"
2025-02-25T15:06:30Z INFO Number of language-specific files num=1
2025-02-25T15:06:30Z INFO [pip] Detecting vulnerabilities...
2025-02-25T15:06:30Z INFO Detected config files num=16

terraform-aws-modules/s3-bucket/aws/main.tf (terraform)

Tests: 2 (SUCCESSES: 0, FAILURES: 2)
Failures: 2 (HIGH: 2, CRITICAL: 0)

AVD-AWS-0088 (HIGH): Bucket does not have encryption enabled
════════════════════════════════════════
S3 Buckets should be encrypted to protect the data that is stored within them if access is compromised.

See https://avd.aquasec.com/misconfig/avd-aws-0088
────────────────────────────────────────
terraform-aws-modules/s3-bucket/aws/main.tf:189-211
via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
189 ┌ resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
190 │ count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
191 │
192 │ bucket = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
193 │ expected_bucket_owner = var.expected_bucket_owner
194 │
195 │ dynamic "rule" {
196 │ for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
197 └
...
────────────────────────────────────────

AVD-AWS-0132 (HIGH): Bucket does not encrypt data with a customer managed key.
════════════════════════════════════════
Encryption using AWS keys provides protection for your S3 buckets. To increase control of the encryption and manage factors like rotation use customer managed keys.

See https://avd.aquasec.com/misconfig/avd-aws-0132
────────────────────────────────────────
terraform-aws-modules/s3-bucket/aws/main.tf:189-211
via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
189 ┌ resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
190 │ count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
191 │
192 │ bucket = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
193 │ expected_bucket_owner = var.expected_bucket_owner
194 │
195 │ dynamic "rule" {
196 │ for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
197 └
...
────────────────────────────────────────

trivy_exitcode=1


Running Trivy in terraform/environments/analytical-platform-compute/cluster
2025-02-25T15:06:30Z INFO [vuln] Vulnerability scanning is enabled
2025-02-25T15:06:30Z INFO [misconfig] Misconfiguration scanning is enabled
2025-02-25T15:06:30Z INFO [secret] Secret scanning is enabled
2025-02-25T15:06:30Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-25T15:06:30Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-25T15:06:32Z INFO [terraform scanner] Scanning root module file_path="."
2025-02-25T15:06:32Z WARN [terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly. module="root" variables="cluster_arn, networking"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:34Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-25T15:06:34Z INFO [terraform executor] Ignore finding rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-25T15:06:34Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-25T15:06:34Z INFO Number of language-specific files num=0
2025-02-25T15:06:34Z INFO Detected config files num=4
trivy_exitcode=1


Running Trivy in terraform/environments/analytical-platform-compute
2025-02-25T15:06:34Z INFO [vuln] Vulnerability scanning is enabled
2025-02-25T15:06:34Z INFO [misconfig] Misconfiguration scanning is enabled
2025-02-25T15:06:34Z INFO [secret] Secret scanning is enabled
2025-02-25T15:06:34Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-25T15:06:34Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-25T15:06:36Z INFO [terraform scanner] Scanning root module file_path="."
2025-02-25T15:06:36Z WARN [terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly. module="root" variables="networking"
2025-02-25T15:06:36Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.transit_gateway_routes" value="cty.NilVal"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:41Z INFO [terraform executor] Ignore finding rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-25T15:06:41Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-25T15:06:41Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-25T15:06:41Z WARN [pip] Unable to find python site-packages directory. License detection is skipped. err="site-packages directory not found"
2025-02-25T15:06:41Z INFO Number of language-specific files num=1
2025-02-25T15:06:41Z INFO [pip] Detecting vulnerabilities...
2025-02-25T15:06:41Z INFO Detected config files num=16

terraform-aws-modules/s3-bucket/aws/main.tf (terraform)

Tests: 2 (SUCCESSES: 0, FAILURES: 2)
Failures: 2 (HIGH: 2, CRITICAL: 0)

AVD-AWS-0088 (HIGH): Bucket does not have encryption enabled
════════════════════════════════════════
S3 Buckets should be encrypted to protect the data that is stored within them if access is compromised.

See https://avd.aquasec.com/misconfig/avd-aws-0088
────────────────────────────────────────
terraform-aws-modules/s3-bucket/aws/main.tf:189-211
via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
189 ┌ resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
190 │ count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
191 │
192 │ bucket = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
193 │ expected_bucket_owner = var.expected_bucket_owner
194 │
195 │ dynamic "rule" {
196 │ for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
197 └
...
────────────────────────────────────────

AVD-AWS-0132 (HIGH): Bucket does not encrypt data with a customer managed key.
════════════════════════════════════════
Encryption using AWS keys provides protection for your S3 buckets. To increase control of the encryption and manage factors like rotation use customer managed keys.

See https://avd.aquasec.com/misconfig/avd-aws-0132
────────────────────────────────────────
terraform-aws-modules/s3-bucket/aws/main.tf:189-211
via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
189 ┌ resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
190 │ count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
191 │
192 │ bucket = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
193 │ expected_bucket_owner = var.expected_bucket_owner
194 │
195 │ dynamic "rule" {
196 │ for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
197 └
...
────────────────────────────────────────

trivy_exitcode=2

</details> #### `Checkov Scan` Success
<details><summary>Show Output</summary>

```hcl

*****************************

Checkov will check the following folders:
terraform/environments/analytical-platform-compute
terraform/environments/analytical-platform-compute/cluster
terraform/environments/analytical-platform-compute

*****************************

Running Checkov in terraform/environments/analytical-platform-compute
Excluding the following checks: CKV_GIT_1,CKV_AWS_126,CKV2_AWS_38,CKV2_AWS_39
2025-02-25 15:06:44,425 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-user:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,425 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/s3-bucket/aws//modules/object:4.6.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,426 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/secrets-manager/aws:1.3.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,426 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/s3-bucket/aws:4.6.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,426 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/kms/aws:3.1.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,426 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/rds/aws:6.10.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,426 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-role-for-service-accounts-eks:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,426 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-github-oidc-role:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,427 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-assumable-role:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,427 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/route53/aws//modules/zones:4.1.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,427 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/route53/aws//modules/records:4.1.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,427 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/vpc/aws//modules/vpc-endpoints:5.19.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,427 [MainThread  ] [WARNI]  Failed to download module ministryofjustice/observability-platform-tenant/aws:1.2.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,428 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-policy:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,428 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/vpc/aws:5.19.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,428 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/acm/aws:5.1.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,428 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/alb/aws:9.13.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,428 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/security-group/aws:5.3.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,431 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/managed-service-prometheus/aws:3.0.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,431 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,431 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws//modules/karpenter:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,431 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/cloudwatch/aws//modules/log-group:5.7.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:44,431 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks-pod-identity/aws:1.10.0 (for external modules, the --download-external-modules flag is required)
terraform scan results:

Passed checks: 253, Failed checks: 0, Skipped checks: 200


checkov_exitcode=0

*****************************

Running Checkov in terraform/environments/analytical-platform-compute/cluster
Excluding the following checks: CKV_GIT_1,CKV_AWS_126,CKV2_AWS_38,CKV2_AWS_39
2025-02-25 15:06:50,160 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/managed-service-prometheus/aws:3.0.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:50,160 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/kms/aws:3.1.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:50,160 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:50,160 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws//modules/karpenter:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:50,160 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-role-for-service-accounts-eks:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:50,161 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-policy:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:50,161 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/cloudwatch/aws//modules/log-group:5.7.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:50,161 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks-pod-identity/aws:1.10.0 (for external modules, the --download-external-modules flag is required)
terraform scan results:

Passed checks: 86, Failed checks: 0, Skipped checks: 54


checkov_exitcode=0

*****************************

Running Checkov in terraform/environments/analytical-platform-compute
Excluding the following checks: CKV_GIT_1,CKV_AWS_126,CKV2_AWS_38,CKV2_AWS_39
2025-02-25 15:06:53,446 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-user:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,446 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/s3-bucket/aws//modules/object:4.6.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,446 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/secrets-manager/aws:1.3.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,446 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/s3-bucket/aws:4.6.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,446 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/kms/aws:3.1.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,446 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/rds/aws:6.10.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,446 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-role-for-service-accounts-eks:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,447 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-github-oidc-role:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,447 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-assumable-role:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,447 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/route53/aws//modules/zones:4.1.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,447 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/route53/aws//modules/records:4.1.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,447 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/vpc/aws//modules/vpc-endpoints:5.19.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,447 [MainThread  ] [WARNI]  Failed to download module ministryofjustice/observability-platform-tenant/aws:1.2.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,448 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-policy:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,451 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/vpc/aws:5.19.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,451 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/acm/aws:5.1.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,451 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/alb/aws:9.13.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,451 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/security-group/aws:5.3.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,452 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/managed-service-prometheus/aws:3.0.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,452 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,452 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws//modules/karpenter:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,452 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/cloudwatch/aws//modules/log-group:5.7.0 (for external modules, the --download-external-modules flag is required)
2025-02-25 15:06:53,452 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks-pod-identity/aws:1.10.0 (for external modules, the --download-external-modules flag is required)
terraform scan results:

Passed checks: 253, Failed checks: 0, Skipped checks: 200


checkov_exitcode=0

CTFLint Scan Success

Show Output
*****************************

Setting default tflint config...
Running tflint --init...
Installing "terraform" plugin...
Installed "terraform" (source: github.com/terraform-linters/tflint-ruleset-terraform, version: 0.9.1)
tflint will check the following folders:
terraform/environments/analytical-platform-compute
terraform/environments/analytical-platform-compute/cluster
terraform/environments/analytical-platform-compute

*****************************

Running tflint in terraform/environments/analytical-platform-compute
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0

*****************************

Running tflint in terraform/environments/analytical-platform-compute/cluster
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0

*****************************

Running tflint in terraform/environments/analytical-platform-compute
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0

Trivy Scan Failed

Show Output
*****************************

Trivy will check the following folders:
terraform/environments/analytical-platform-compute
terraform/environments/analytical-platform-compute/cluster
terraform/environments/analytical-platform-compute

*****************************

Running Trivy in terraform/environments/analytical-platform-compute
2025-02-25T15:06:09Z	INFO	[vulndb] Need to update DB
2025-02-25T15:06:09Z	INFO	[vulndb] Downloading vulnerability DB...
2025-02-25T15:06:09Z	INFO	[vulndb] Downloading artifact...	repo="public.ecr.aws/aquasecurity/trivy-db:2"
2025-02-25T15:06:11Z	INFO	[vulndb] Artifact successfully downloaded	repo="public.ecr.aws/aquasecurity/trivy-db:2"
2025-02-25T15:06:11Z	INFO	[vuln] Vulnerability scanning is enabled
2025-02-25T15:06:11Z	INFO	[misconfig] Misconfiguration scanning is enabled
2025-02-25T15:06:11Z	INFO	[misconfig] Need to update the built-in checks
2025-02-25T15:06:11Z	INFO	[misconfig] Downloading the built-in checks...
162.46 KiB / 162.46 KiB [------------------------------------------------------] 100.00% ? p/s 100ms2025-02-25T15:06:12Z	INFO	[secret] Secret scanning is enabled
2025-02-25T15:06:12Z	INFO	[secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-25T15:06:12Z	INFO	[secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-25T15:06:13Z	INFO	[terraform scanner] Scanning root module	file_path="."
2025-02-25T15:06:13Z	WARN	[terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly.	module="root" variables="networking"
2025-02-25T15:06:13Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.transit_gateway_routes" value="cty.NilVal"
2025-02-25T15:06:25Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:26Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:27Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:29Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/main.tf:69"
2025-02-25T15:06:29Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access-to-cidr" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/main.tf:70"
2025-02-25T15:06:29Z	INFO	[terraform executor] Ignore finding	rule="aws-ec2-no-public-egress-sgr" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/node_groups.tf:247"
2025-02-25T15:06:29Z	WARN	[pip] Unable to find python `site-packages` directory. License detection is skipped.	err="site-packages directory not found"
2025-02-25T15:06:30Z	INFO	Number of language-specific files	num=1
2025-02-25T15:06:30Z	INFO	[pip] Detecting vulnerabilities...
2025-02-25T15:06:30Z	INFO	Detected config files	num=16

terraform-aws-modules/s3-bucket/aws/main.tf (terraform)
=======================================================
Tests: 2 (SUCCESSES: 0, FAILURES: 2)
Failures: 2 (HIGH: 2, CRITICAL: 0)

AVD-AWS-0088 (HIGH): Bucket does not have encryption enabled
════════════════════════════════════════
S3 Buckets should be encrypted to protect the data that is stored within them if access is compromised.


See https://avd.aquasec.com/misconfig/avd-aws-0088
────────────────────────────────────────
 terraform-aws-modules/s3-bucket/aws/main.tf:189-211
   via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
 189resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
 190count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
 191192bucket                = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
 193expected_bucket_owner = var.expected_bucket_owner
 194195dynamic "rule" {
 196for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
 197...   
────────────────────────────────────────


AVD-AWS-0132 (HIGH): Bucket does not encrypt data with a customer managed key.
════════════════════════════════════════
Encryption using AWS keys provides protection for your S3 buckets. To increase control of the encryption and manage factors like rotation use customer managed keys.


See https://avd.aquasec.com/misconfig/avd-aws-0132
────────────────────────────────────────
 terraform-aws-modules/s3-bucket/aws/main.tf:189-211
   via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
 189resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
 190count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
 191192bucket                = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
 193expected_bucket_owner = var.expected_bucket_owner
 194195dynamic "rule" {
 196for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
 197...   
────────────────────────────────────────


trivy_exitcode=1

*****************************

Running Trivy in terraform/environments/analytical-platform-compute/cluster
2025-02-25T15:06:30Z	INFO	[vuln] Vulnerability scanning is enabled
2025-02-25T15:06:30Z	INFO	[misconfig] Misconfiguration scanning is enabled
2025-02-25T15:06:30Z	INFO	[secret] Secret scanning is enabled
2025-02-25T15:06:30Z	INFO	[secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-25T15:06:30Z	INFO	[secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-25T15:06:32Z	INFO	[terraform scanner] Scanning root module	file_path="."
2025-02-25T15:06:32Z	WARN	[terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly.	module="root" variables="cluster_arn, networking"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:32Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:33Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:34Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-25T15:06:34Z	INFO	[terraform executor] Ignore finding	rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-25T15:06:34Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-25T15:06:34Z	INFO	Number of language-specific files	num=0
2025-02-25T15:06:34Z	INFO	Detected config files	num=4
trivy_exitcode=1

*****************************

Running Trivy in terraform/environments/analytical-platform-compute
2025-02-25T15:06:34Z	INFO	[vuln] Vulnerability scanning is enabled
2025-02-25T15:06:34Z	INFO	[misconfig] Misconfiguration scanning is enabled
2025-02-25T15:06:34Z	INFO	[secret] Secret scanning is enabled
2025-02-25T15:06:34Z	INFO	[secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-25T15:06:34Z	INFO	[secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-25T15:06:36Z	INFO	[terraform scanner] Scanning root module	file_path="."
2025-02-25T15:06:36Z	WARN	[terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly.	module="root" variables="networking"
2025-02-25T15:06:36Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.transit_gateway_routes" value="cty.NilVal"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:38Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:39Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-25T15:06:41Z	INFO	[terraform executor] Ignore finding	rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-25T15:06:41Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-25T15:06:41Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-25T15:06:41Z	WARN	[pip] Unable to find python `site-packages` directory. License detection is skipped.	err="site-packages directory not found"
2025-02-25T15:06:41Z	INFO	Number of language-specific files	num=1
2025-02-25T15:06:41Z	INFO	[pip] Detecting vulnerabilities...
2025-02-25T15:06:41Z	INFO	Detected config files	num=16

terraform-aws-modules/s3-bucket/aws/main.tf (terraform)
=======================================================
Tests: 2 (SUCCESSES: 0, FAILURES: 2)
Failures: 2 (HIGH: 2, CRITICAL: 0)

AVD-AWS-0088 (HIGH): Bucket does not have encryption enabled
════════════════════════════════════════
S3 Buckets should be encrypted to protect the data that is stored within them if access is compromised.


See https://avd.aquasec.com/misconfig/avd-aws-0088
────────────────────────────────────────
 terraform-aws-modules/s3-bucket/aws/main.tf:189-211
   via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
 189resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
 190count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
 191192bucket                = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
 193expected_bucket_owner = var.expected_bucket_owner
 194195dynamic "rule" {
 196for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
 197...   
────────────────────────────────────────


AVD-AWS-0132 (HIGH): Bucket does not encrypt data with a customer managed key.
════════════════════════════════════════
Encryption using AWS keys provides protection for your S3 buckets. To increase control of the encryption and manage factors like rotation use customer managed keys.


See https://avd.aquasec.com/misconfig/avd-aws-0132
────────────────────────────────────────
 terraform-aws-modules/s3-bucket/aws/main.tf:189-211
   via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
 189resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
 190count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
 191192bucket                = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
 193expected_bucket_owner = var.expected_bucket_owner
 194195dynamic "rule" {
 196for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
 197...   
────────────────────────────────────────


trivy_exitcode=2

Copy link
Contributor

Trivy Scan Failed

Show Output ```hcl

Trivy will check the following folders:
terraform/environments/analytical-platform-compute
terraform/environments/analytical-platform-compute/cluster
terraform/environments/analytical-platform-compute


Running Trivy in terraform/environments/analytical-platform-compute
2025-02-27T11:06:51Z INFO [vulndb] Need to update DB
2025-02-27T11:06:51Z INFO [vulndb] Downloading vulnerability DB...
2025-02-27T11:06:51Z INFO [vulndb] Downloading artifact... repo="public.ecr.aws/aquasecurity/trivy-db:2"
2025-02-27T11:06:54Z INFO [vulndb] Artifact successfully downloaded repo="public.ecr.aws/aquasecurity/trivy-db:2"
2025-02-27T11:06:54Z INFO [vuln] Vulnerability scanning is enabled
2025-02-27T11:06:54Z INFO [misconfig] Misconfiguration scanning is enabled
2025-02-27T11:06:54Z INFO [misconfig] Need to update the built-in checks
2025-02-27T11:06:54Z INFO [misconfig] Downloading the built-in checks...
162.46 KiB / 162.46 KiB [---------------------------------------------------------] 100.00% ? p/s 0s2025-02-27T11:06:54Z INFO [secret] Secret scanning is enabled
2025-02-27T11:06:54Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-27T11:06:54Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-27T11:06:56Z WARN [pip] Unable to find python site-packages directory. License detection is skipped. err="site-packages directory not found"
2025-02-27T11:06:57Z INFO [terraform scanner] Scanning root module file_path="."
2025-02-27T11:06:57Z WARN [terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly. module="root" variables="networking"
2025-02-27T11:06:57Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.transit_gateway_routes" value="cty.NilVal"
2025-02-27T11:07:03Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:05Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:05Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:11Z INFO [terraform executor] Ignore finding rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-27T11:07:11Z INFO [terraform executor] Ignore finding rule="aws-ec2-no-public-egress-sgr" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/node_groups.tf:247"
2025-02-27T11:07:11Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-27T11:07:11Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/main.tf:69"
2025-02-27T11:07:11Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-27T11:07:11Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access-to-cidr" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/main.tf:70"
2025-02-27T11:07:11Z INFO Number of language-specific files num=1
2025-02-27T11:07:11Z INFO [pip] Detecting vulnerabilities...
2025-02-27T11:07:11Z INFO Detected config files num=18

terraform-aws-modules/s3-bucket/aws/main.tf (terraform)

Tests: 2 (SUCCESSES: 0, FAILURES: 2)
Failures: 2 (HIGH: 2, CRITICAL: 0)

AVD-AWS-0088 (HIGH): Bucket does not have encryption enabled
════════════════════════════════════════
S3 Buckets should be encrypted to protect the data that is stored within them if access is compromised.

See https://avd.aquasec.com/misconfig/avd-aws-0088
────────────────────────────────────────
terraform-aws-modules/s3-bucket/aws/main.tf:189-211
via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
189 ┌ resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
190 │ count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
191 │
192 │ bucket = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
193 │ expected_bucket_owner = var.expected_bucket_owner
194 │
195 │ dynamic "rule" {
196 │ for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
197 └
...
────────────────────────────────────────

AVD-AWS-0132 (HIGH): Bucket does not encrypt data with a customer managed key.
════════════════════════════════════════
Encryption using AWS keys provides protection for your S3 buckets. To increase control of the encryption and manage factors like rotation use customer managed keys.

See https://avd.aquasec.com/misconfig/avd-aws-0132
────────────────────────────────────────
terraform-aws-modules/s3-bucket/aws/main.tf:189-211
via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
189 ┌ resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
190 │ count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
191 │
192 │ bucket = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
193 │ expected_bucket_owner = var.expected_bucket_owner
194 │
195 │ dynamic "rule" {
196 │ for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
197 └
...
────────────────────────────────────────

trivy_exitcode=1


Running Trivy in terraform/environments/analytical-platform-compute/cluster
2025-02-27T11:07:11Z INFO [vuln] Vulnerability scanning is enabled
2025-02-27T11:07:11Z INFO [misconfig] Misconfiguration scanning is enabled
2025-02-27T11:07:11Z INFO [secret] Secret scanning is enabled
2025-02-27T11:07:11Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-27T11:07:11Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-27T11:07:12Z INFO [terraform scanner] Scanning root module file_path="."
2025-02-27T11:07:12Z WARN [terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly. module="root" variables="networking"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:14Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:14Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-27T11:07:14Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-27T11:07:14Z INFO [terraform executor] Ignore finding rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-27T11:07:14Z INFO Number of language-specific files num=0
2025-02-27T11:07:14Z INFO Detected config files num=4
trivy_exitcode=1


Running Trivy in terraform/environments/analytical-platform-compute
2025-02-27T11:07:15Z INFO [vuln] Vulnerability scanning is enabled
2025-02-27T11:07:15Z INFO [misconfig] Misconfiguration scanning is enabled
2025-02-27T11:07:15Z INFO [secret] Secret scanning is enabled
2025-02-27T11:07:15Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-27T11:07:15Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-27T11:07:16Z WARN [pip] Unable to find python site-packages directory. License detection is skipped. err="site-packages directory not found"
2025-02-27T11:07:17Z INFO [terraform scanner] Scanning root module file_path="."
2025-02-27T11:07:17Z WARN [terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly. module="root" variables="networking"
2025-02-27T11:07:17Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.transit_gateway_routes" value="cty.NilVal"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:20Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:20Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["airflow-high-memory"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.eks.module.eks.module.eks_managed_node_group["general"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z ERROR [terraform evaluator] Failed to expand dynamic block. block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:26Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-27T11:07:26Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-27T11:07:26Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-27T11:07:26Z INFO [terraform executor] Ignore finding rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-27T11:07:26Z INFO [terraform executor] Ignore finding rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-27T11:07:26Z INFO [terraform executor] Ignore finding rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-27T11:07:26Z INFO Number of language-specific files num=1
2025-02-27T11:07:26Z INFO [pip] Detecting vulnerabilities...
2025-02-27T11:07:26Z INFO Detected config files num=16

terraform-aws-modules/s3-bucket/aws/main.tf (terraform)

Tests: 2 (SUCCESSES: 0, FAILURES: 2)
Failures: 2 (HIGH: 2, CRITICAL: 0)

AVD-AWS-0088 (HIGH): Bucket does not have encryption enabled
════════════════════════════════════════
S3 Buckets should be encrypted to protect the data that is stored within them if access is compromised.

See https://avd.aquasec.com/misconfig/avd-aws-0088
────────────────────────────────────────
terraform-aws-modules/s3-bucket/aws/main.tf:189-211
via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
189 ┌ resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
190 │ count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
191 │
192 │ bucket = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
193 │ expected_bucket_owner = var.expected_bucket_owner
194 │
195 │ dynamic "rule" {
196 │ for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
197 └
...
────────────────────────────────────────

AVD-AWS-0132 (HIGH): Bucket does not encrypt data with a customer managed key.
════════════════════════════════════════
Encryption using AWS keys provides protection for your S3 buckets. To increase control of the encryption and manage factors like rotation use customer managed keys.

See https://avd.aquasec.com/misconfig/avd-aws-0132
────────────────────────────────────────
terraform-aws-modules/s3-bucket/aws/main.tf:189-211
via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
189 ┌ resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
190 │ count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
191 │
192 │ bucket = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
193 │ expected_bucket_owner = var.expected_bucket_owner
194 │
195 │ dynamic "rule" {
196 │ for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
197 └
...
────────────────────────────────────────

trivy_exitcode=2

</details> #### `Checkov Scan` Success
<details><summary>Show Output</summary>

```hcl

*****************************

Checkov will check the following folders:
terraform/environments/analytical-platform-compute
terraform/environments/analytical-platform-compute/cluster
terraform/environments/analytical-platform-compute

*****************************

Running Checkov in terraform/environments/analytical-platform-compute
Excluding the following checks: CKV_GIT_1,CKV_AWS_126,CKV2_AWS_38,CKV2_AWS_39
2025-02-27 11:07:29,087 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/route53/aws//modules/records:4.1.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,088 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/rds/aws:6.10.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,091 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/vpc/aws//modules/vpc-endpoints:5.19.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,091 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-user:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,091 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-policy:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,092 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/route53/aws//modules/zones:4.1.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,092 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/kms/aws:3.1.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,092 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/secrets-manager/aws:1.3.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,092 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/s3-bucket/aws//modules/object:4.6.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,092 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/security-group/aws:5.3.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,092 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/acm/aws:5.1.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,092 [MainThread  ] [WARNI]  Failed to download module ministryofjustice/observability-platform-tenant/aws:1.2.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,093 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-role-for-service-accounts-eks:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,093 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-github-oidc-role:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,093 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-assumable-role:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,093 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/vpc/aws:5.19.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,093 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/s3-bucket/aws:4.6.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,093 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/alb/aws:9.13.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,093 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/managed-service-prometheus/aws:3.0.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,094 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/cloudwatch/aws//modules/log-group:5.7.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,094 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,094 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws//modules/karpenter:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:29,094 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks-pod-identity/aws:1.10.0 (for external modules, the --download-external-modules flag is required)
terraform scan results:

Passed checks: 339, Failed checks: 0, Skipped checks: 254


checkov_exitcode=0

*****************************

Running Checkov in terraform/environments/analytical-platform-compute/cluster
Excluding the following checks: CKV_GIT_1,CKV_AWS_126,CKV2_AWS_38,CKV2_AWS_39
2025-02-27 11:07:35,569 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/managed-service-prometheus/aws:3.0.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:35,569 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/cloudwatch/aws//modules/log-group:5.7.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:35,569 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-policy:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:35,569 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/kms/aws:3.1.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:35,570 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-role-for-service-accounts-eks:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:35,570 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:35,570 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws//modules/karpenter:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:35,570 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks-pod-identity/aws:1.10.0 (for external modules, the --download-external-modules flag is required)
terraform scan results:

Passed checks: 86, Failed checks: 0, Skipped checks: 54


checkov_exitcode=0

*****************************

Running Checkov in terraform/environments/analytical-platform-compute
Excluding the following checks: CKV_GIT_1,CKV_AWS_126,CKV2_AWS_38,CKV2_AWS_39
2025-02-27 11:07:38,674 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/route53/aws//modules/records:4.1.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,675 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/rds/aws:6.10.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,675 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/vpc/aws//modules/vpc-endpoints:5.19.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,675 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-user:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,675 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-policy:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,676 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/route53/aws//modules/zones:4.1.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,676 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/kms/aws:3.1.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,676 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/secrets-manager/aws:1.3.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,679 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/s3-bucket/aws//modules/object:4.6.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,679 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/security-group/aws:5.3.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,680 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/acm/aws:5.1.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,680 [MainThread  ] [WARNI]  Failed to download module ministryofjustice/observability-platform-tenant/aws:1.2.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,680 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-role-for-service-accounts-eks:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,683 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-github-oidc-role:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,683 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/iam/aws//modules/iam-assumable-role:5.52.2 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,684 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/vpc/aws:5.19.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,684 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/s3-bucket/aws:4.6.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,684 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/alb/aws:9.13.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,684 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/managed-service-prometheus/aws:3.0.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,684 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/cloudwatch/aws//modules/log-group:5.7.0 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,685 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,685 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks/aws//modules/karpenter:20.33.1 (for external modules, the --download-external-modules flag is required)
2025-02-27 11:07:38,685 [MainThread  ] [WARNI]  Failed to download module terraform-aws-modules/eks-pod-identity/aws:1.10.0 (for external modules, the --download-external-modules flag is required)
terraform scan results:

Passed checks: 339, Failed checks: 0, Skipped checks: 254


checkov_exitcode=0

CTFLint Scan Success

Show Output
*****************************

Setting default tflint config...
Running tflint --init...
Installing "terraform" plugin...
Installed "terraform" (source: github.com/terraform-linters/tflint-ruleset-terraform, version: 0.9.1)
tflint will check the following folders:
terraform/environments/analytical-platform-compute
terraform/environments/analytical-platform-compute/cluster
terraform/environments/analytical-platform-compute

*****************************

Running tflint in terraform/environments/analytical-platform-compute
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0

*****************************

Running tflint in terraform/environments/analytical-platform-compute/cluster
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0

*****************************

Running tflint in terraform/environments/analytical-platform-compute
Excluding the following checks: terraform_unused_declarations
tflint_exitcode=0

Trivy Scan Failed

Show Output
*****************************

Trivy will check the following folders:
terraform/environments/analytical-platform-compute
terraform/environments/analytical-platform-compute/cluster
terraform/environments/analytical-platform-compute

*****************************

Running Trivy in terraform/environments/analytical-platform-compute
2025-02-27T11:06:51Z	INFO	[vulndb] Need to update DB
2025-02-27T11:06:51Z	INFO	[vulndb] Downloading vulnerability DB...
2025-02-27T11:06:51Z	INFO	[vulndb] Downloading artifact...	repo="public.ecr.aws/aquasecurity/trivy-db:2"
2025-02-27T11:06:54Z	INFO	[vulndb] Artifact successfully downloaded	repo="public.ecr.aws/aquasecurity/trivy-db:2"
2025-02-27T11:06:54Z	INFO	[vuln] Vulnerability scanning is enabled
2025-02-27T11:06:54Z	INFO	[misconfig] Misconfiguration scanning is enabled
2025-02-27T11:06:54Z	INFO	[misconfig] Need to update the built-in checks
2025-02-27T11:06:54Z	INFO	[misconfig] Downloading the built-in checks...
162.46 KiB / 162.46 KiB [---------------------------------------------------------] 100.00% ? p/s 0s2025-02-27T11:06:54Z	INFO	[secret] Secret scanning is enabled
2025-02-27T11:06:54Z	INFO	[secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-27T11:06:54Z	INFO	[secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-27T11:06:56Z	WARN	[pip] Unable to find python `site-packages` directory. License detection is skipped.	err="site-packages directory not found"
2025-02-27T11:06:57Z	INFO	[terraform scanner] Scanning root module	file_path="."
2025-02-27T11:06:57Z	WARN	[terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly.	module="root" variables="networking"
2025-02-27T11:06:57Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.transit_gateway_routes" value="cty.NilVal"
2025-02-27T11:07:03Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:04Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:05Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:05Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:05Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:06Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:07Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:11Z	INFO	[terraform executor] Ignore finding	rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-27T11:07:11Z	INFO	[terraform executor] Ignore finding	rule="aws-ec2-no-public-egress-sgr" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/node_groups.tf:247"
2025-02-27T11:07:11Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-27T11:07:11Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/main.tf:69"
2025-02-27T11:07:11Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-27T11:07:11Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access-to-cidr" range="git::https:/github.com/terraform-aws-modules/terraform-aws-eks?ref=50cb230c8a1793f5ef4cc52c4c789b656b141168/main.tf:70"
2025-02-27T11:07:11Z	INFO	Number of language-specific files	num=1
2025-02-27T11:07:11Z	INFO	[pip] Detecting vulnerabilities...
2025-02-27T11:07:11Z	INFO	Detected config files	num=18

terraform-aws-modules/s3-bucket/aws/main.tf (terraform)
=======================================================
Tests: 2 (SUCCESSES: 0, FAILURES: 2)
Failures: 2 (HIGH: 2, CRITICAL: 0)

AVD-AWS-0088 (HIGH): Bucket does not have encryption enabled
════════════════════════════════════════
S3 Buckets should be encrypted to protect the data that is stored within them if access is compromised.


See https://avd.aquasec.com/misconfig/avd-aws-0088
────────────────────────────────────────
 terraform-aws-modules/s3-bucket/aws/main.tf:189-211
   via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
 189resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
 190count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
 191192bucket                = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
 193expected_bucket_owner = var.expected_bucket_owner
 194195dynamic "rule" {
 196for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
 197...   
────────────────────────────────────────


AVD-AWS-0132 (HIGH): Bucket does not encrypt data with a customer managed key.
════════════════════════════════════════
Encryption using AWS keys provides protection for your S3 buckets. To increase control of the encryption and manage factors like rotation use customer managed keys.


See https://avd.aquasec.com/misconfig/avd-aws-0132
────────────────────────────────────────
 terraform-aws-modules/s3-bucket/aws/main.tf:189-211
   via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
 189resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
 190count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
 191192bucket                = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
 193expected_bucket_owner = var.expected_bucket_owner
 194195dynamic "rule" {
 196for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
 197...   
────────────────────────────────────────


trivy_exitcode=1

*****************************

Running Trivy in terraform/environments/analytical-platform-compute/cluster
2025-02-27T11:07:11Z	INFO	[vuln] Vulnerability scanning is enabled
2025-02-27T11:07:11Z	INFO	[misconfig] Misconfiguration scanning is enabled
2025-02-27T11:07:11Z	INFO	[secret] Secret scanning is enabled
2025-02-27T11:07:11Z	INFO	[secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-27T11:07:11Z	INFO	[secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-27T11:07:12Z	INFO	[terraform scanner] Scanning root module	file_path="."
2025-02-27T11:07:12Z	WARN	[terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly.	module="root" variables="networking"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:13Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:14Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:14Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:14Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-27T11:07:14Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-27T11:07:14Z	INFO	[terraform executor] Ignore finding	rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-27T11:07:14Z	INFO	Number of language-specific files	num=0
2025-02-27T11:07:14Z	INFO	Detected config files	num=4
trivy_exitcode=1

*****************************

Running Trivy in terraform/environments/analytical-platform-compute
2025-02-27T11:07:15Z	INFO	[vuln] Vulnerability scanning is enabled
2025-02-27T11:07:15Z	INFO	[misconfig] Misconfiguration scanning is enabled
2025-02-27T11:07:15Z	INFO	[secret] Secret scanning is enabled
2025-02-27T11:07:15Z	INFO	[secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2025-02-27T11:07:15Z	INFO	[secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2025-02-27T11:07:16Z	WARN	[pip] Unable to find python `site-packages` directory. License detection is skipped.	err="site-packages directory not found"
2025-02-27T11:07:17Z	INFO	[terraform scanner] Scanning root module	file_path="."
2025-02-27T11:07:17Z	WARN	[terraform parser] Variable values was not found in the environment or variable files. Evaluating may not work correctly.	module="root" variables="networking"
2025-02-27T11:07:17Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.transit_gateway_routes" value="cty.NilVal"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:19Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:20Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:20Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:20Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.analytical_platform_ui_service_role.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.aws_ec2_tag.cluster_primary_security_group" value="cty.NilVal"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_cluster_logs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks_ebs_kms.data.aws_iam_policy_document.this[0]" err="1 error occurred:\n\t* invalid for-each in data.aws_iam_policy_document.this[0].dynamic.statement.content.dynamic.condition block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"airflow-high-memory\"].aws_launch_template.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_launch_template.this[0].dynamic.block_device_mappings block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand block. Invalid "for-each" argument. Must be known and iterable.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_iam_role_policy_attachment.this" value="cty.NilVal"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:21Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.eks.module.eks.module.eks_managed_node_group[\"general\"].aws_eks_node_group.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_eks_node_group.this[0].dynamic.node_repair_config block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_auth_rds.module.db_instance.aws_db_instance.this[0]" err="2 errors occurred:\n\t* invalid for-each in aws_db_instance.this[0].dynamic.restore_to_point_in_time block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\t* invalid for-each in aws_db_instance.this[0].dynamic.s3_import block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:22Z	ERROR	[terraform evaluator] Failed to expand dynamic block.	block="module.mlflow_bucket.aws_s3_bucket_server_side_encryption_configuration.this[0]" err="1 error occurred:\n\t* invalid for-each in aws_s3_bucket_server_side_encryption_configuration.this[0].dynamic.rule block: cannot use a cty.NilVal value in for_each. An iterable collection is required\n\n"
2025-02-27T11:07:26Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-27T11:07:26Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access" range="terraform-aws-modules/eks/aws/main.tf:69"
2025-02-27T11:07:26Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-27T11:07:26Z	INFO	[terraform executor] Ignore finding	rule="aws-eks-no-public-cluster-access-to-cidr" range="terraform-aws-modules/eks/aws/main.tf:70"
2025-02-27T11:07:26Z	INFO	[terraform executor] Ignore finding	rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-27T11:07:26Z	INFO	[terraform executor] Ignore finding	rule="aws-ec2-no-public-egress-sgr" range="terraform-aws-modules/eks/aws/node_groups.tf:247"
2025-02-27T11:07:26Z	INFO	Number of language-specific files	num=1
2025-02-27T11:07:26Z	INFO	[pip] Detecting vulnerabilities...
2025-02-27T11:07:26Z	INFO	Detected config files	num=16

terraform-aws-modules/s3-bucket/aws/main.tf (terraform)
=======================================================
Tests: 2 (SUCCESSES: 0, FAILURES: 2)
Failures: 2 (HIGH: 2, CRITICAL: 0)

AVD-AWS-0088 (HIGH): Bucket does not have encryption enabled
════════════════════════════════════════
S3 Buckets should be encrypted to protect the data that is stored within them if access is compromised.


See https://avd.aquasec.com/misconfig/avd-aws-0088
────────────────────────────────────────
 terraform-aws-modules/s3-bucket/aws/main.tf:189-211
   via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
 189resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
 190count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
 191192bucket                = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
 193expected_bucket_owner = var.expected_bucket_owner
 194195dynamic "rule" {
 196for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
 197...   
────────────────────────────────────────


AVD-AWS-0132 (HIGH): Bucket does not encrypt data with a customer managed key.
════════════════════════════════════════
Encryption using AWS keys provides protection for your S3 buckets. To increase control of the encryption and manage factors like rotation use customer managed keys.


See https://avd.aquasec.com/misconfig/avd-aws-0132
────────────────────────────────────────
 terraform-aws-modules/s3-bucket/aws/main.tf:189-211
   via s3-buckets.tf:1-23 (module.mlflow_bucket)
────────────────────────────────────────
 189resource "aws_s3_bucket_server_side_encryption_configuration" "this" {
 190count = local.create_bucket && length(keys(var.server_side_encryption_configuration)) > 0 ? 1 : 0
 191192bucket                = var.is_directory_bucket ? aws_s3_directory_bucket.this[0].bucket : aws_s3_bucket.this[0].id
 193expected_bucket_owner = var.expected_bucket_owner
 194195dynamic "rule" {
 196for_each = try(flatten([var.server_side_encryption_configuration["rule"]]), [])
 197...   
────────────────────────────────────────


trivy_exitcode=2

key = "terraform.tfstate"
region = "eu-west-2"
use_lockfile = true
workspace_key_prefix = "environments/members/analytical-platform-compute" # This will store the object as environments/members/analytical-platform-compute/${workspace}/terraform.tfstate
Copy link
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Suggested change
workspace_key_prefix = "environments/members/analytical-platform-compute" # This will store the object as environments/members/analytical-platform-compute/${workspace}/terraform.tfstate
workspace_key_prefix = "environments/members/analytical-platform-compute/cluster"

The new state needs a distinct prefix

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
environments-repository Used to exclude PRs from this repo in our Slack PR update github-workflow
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants