Skip to main content

CCC-Complete (Behavioural) 0.1

Test results for this specific product, vendor, and version combination

VendorFINOS
ProductCCC-Complete (Behavioural)
Version0.1

Download Raw Results

Download the original OCSF or HTML result files used to generate this page

File NameDownload
aws-vpc-cfi-20260409t081624z-vpc-bad
aws-vpc-cfi-20260409t081624z-vpc
aws-vpc-combined
aws-vpc-prowler
aws-vpc-summary

Test Summary

Aggregate summary of all tests for this configuration result

Resources In Configuration2
Count of Tests8
Passing Tests4
Failing Tests4
Catalogs Tested

Control Catalog Summary

Summary of test results grouped by control catalog and resource

Control CatalogResourcesTotal TestsPassingFailingTested RequirementsMissing RequirementsUnused Core Requirements
CCC.VPC
vpc-022fefc877eaaa29...vpc-0538ea308fdf4f8c...
844
None

Test Mapping Summary

Summary of test mappings showing how event codes map to test requirements

Control CatalogTest RequirementMapped Tests (Event Code | Total | Passing | Failing)
CCC.VPC
CCC.VPC.CN02.AR01
When a resource is created in a public subnet, that resource MUST NOT be assigned an external IP address by default.
Behavioural check (active): resource launched in public subnet is not assigned an external IP
422
CCC.VPC
CCC.VPC.CN04.AR01
When any network traffic goes to or from an interface in the VPC, the service MUST capture and log all relevant information.
Behavioral check (active): traffic produces flow log records
422

Resource Summary

Summary of all resources mentioned in OCSF results

Resource NameResource TypeControl CatalogsTotal TestsPassingFailing
vpc-022fefc877eaaa292
vpc404
vpc-0538ea308fdf4f8c4
vpc440

Test Results

OCSF test results filtered for entries with CCC compliance mappings

StatusFindingResource NameResource TypeMessageTest Requirements
FAIL
Behavioural check (active): resource launched in public subnet is not assigned an external IP
✓ a cloud api for "{Instance}" in "api" ✓ I call "{api}" with "GetServiceAPI" using argument "vpc" ✓ I refer to "{result}" as "vpcService" ✓ I refer to "{UID}" as "TargetVpcId" ✓ I call "{vpcService}" with "SelectPublicSubnetForTest" using argument "{TargetVpcId}" ✓ I refer to "{result.SubnetId}" as "TestSubnetId" ✓ I call "{vpcService}" with "CreateTestResourceInSubnet" using argument "{TestSubnetId}" ✓ I refer to "{result.ResourceId}" as "TestResourceId" ✓ I call "{vpcService}" with "GetResourceExternalIpAssignment" using argument "{TestResourceId}" ✓ I refer to "{result.HasExternalIp}" as "HasExternalIp" ✗ "{HasExternalIp}" is false - Error: expected {HasExternalIp} to be falsy, got true (type: bool) ⊘ I call "{vpcService}" with "DeleteTestResource" using argument "{TestResourceId}" (skipped) ⊘ "{result.Deleted}" is true (skipped)
vpc-022fefc877eaaa292
vpc
Behavioural check (active): resource launched in public subnet is not assigned an external IP
FAIL
Behavioral check (active): traffic produces flow log records
✓ a cloud api for "{Instance}" in "api" ✓ I call "{api}" with "GetServiceAPI" using argument "vpc" ✓ I refer to "{result}" as "vpcService" ✓ I refer to "{UID}" as "TargetVpcId" ✓ I call "{vpcService}" with "PrepareFlowLogDeliveryObservation" using argument "{TargetVpcId}" ✓ I call "{vpcService}" with "GenerateTestTraffic" using argument "{TargetVpcId}" ✓ I refer to "{result.ResourceId}" as "TestResourceId" ✓ I refer to "{result.CleanupDeleted}" as "TrafficCleanupDeleted" ✓ I call "{vpcService}" with "ObserveRecentFlowLogDelivery" using argument "{TargetVpcId}" ✓ I refer to "{result.RecordsObserved}" as "RecordsObserved" ✓ I call "{vpcService}" with "DeleteTestResource" using argument "{TestResourceId}" ✓ "{result.Deleted}" is true ✓ "{TrafficCleanupDeleted}" is true ✗ "{RecordsObserved}" is true - Error: expected {RecordsObserved} to be truthy, got false (type: bool)
vpc-022fefc877eaaa292
vpc
Behavioral check (active): traffic produces flow log records
PASS
Behavioural check (active): resource launched in public subnet is not assigned an external IP
✓ a cloud api for "{Instance}" in "api" ✓ I call "{api}" with "GetServiceAPI" using argument "vpc" ✓ I refer to "{result}" as "vpcService" ✓ I refer to "{UID}" as "TargetVpcId" ✓ I call "{vpcService}" with "SelectPublicSubnetForTest" using argument "{TargetVpcId}" ✓ I refer to "{result.SubnetId}" as "TestSubnetId" ✓ I call "{vpcService}" with "CreateTestResourceInSubnet" using argument "{TestSubnetId}" ✓ I refer to "{result.ResourceId}" as "TestResourceId" ✓ I call "{vpcService}" with "GetResourceExternalIpAssignment" using argument "{TestResourceId}" ✓ I refer to "{result.HasExternalIp}" as "HasExternalIp" ✓ "{HasExternalIp}" is false ✓ I call "{vpcService}" with "DeleteTestResource" using argument "{TestResourceId}" ✓ "{result.Deleted}" is true
vpc-0538ea308fdf4f8c4
vpc
Behavioural check (active): resource launched in public subnet is not assigned an external IP
PASS
Behavioral check (active): traffic produces flow log records
✓ a cloud api for "{Instance}" in "api" ✓ I call "{api}" with "GetServiceAPI" using argument "vpc" ✓ I refer to "{result}" as "vpcService" ✓ I refer to "{UID}" as "TargetVpcId" ✓ I call "{vpcService}" with "PrepareFlowLogDeliveryObservation" using argument "{TargetVpcId}" ✓ I call "{vpcService}" with "GenerateTestTraffic" using argument "{TargetVpcId}" ✓ I refer to "{result.ResourceId}" as "TestResourceId" ✓ I refer to "{result.CleanupDeleted}" as "TrafficCleanupDeleted" ✓ I call "{vpcService}" with "ObserveRecentFlowLogDelivery" using argument "{TargetVpcId}" ✓ I refer to "{result.RecordsObserved}" as "RecordsObserved" ✓ I call "{vpcService}" with "DeleteTestResource" using argument "{TestResourceId}" ✓ "{result.Deleted}" is true ✓ "{TrafficCleanupDeleted}" is true ✓ "{RecordsObserved}" is true
vpc-0538ea308fdf4f8c4
vpc
Behavioral check (active): traffic produces flow log records
FAIL
Behavioural check (active): resource launched in public subnet is not assigned an external IP
✓ a cloud api for "{Instance}" in "api" ✓ I call "{api}" with "GetServiceAPI" using argument "vpc" ✓ I refer to "{result}" as "vpcService" ✓ I refer to "{UID}" as "TargetVpcId" ✓ I call "{vpcService}" with "SelectPublicSubnetForTest" using argument "{TargetVpcId}" ✓ I refer to "{result.SubnetId}" as "TestSubnetId" ✓ I call "{vpcService}" with "CreateTestResourceInSubnet" using argument "{TestSubnetId}" ✓ I refer to "{result.ResourceId}" as "TestResourceId" ✓ I call "{vpcService}" with "GetResourceExternalIpAssignment" using argument "{TestResourceId}" ✓ I refer to "{result.HasExternalIp}" as "HasExternalIp" ✗ "{HasExternalIp}" is false - Error: expected {HasExternalIp} to be falsy, got true (type: bool) ⊘ I call "{vpcService}" with "DeleteTestResource" using argument "{TestResourceId}" (skipped) ⊘ "{result.Deleted}" is true (skipped)
vpc-022fefc877eaaa292
vpc
Behavioural check (active): resource launched in public subnet is not assigned an external IP
FAIL
Behavioral check (active): traffic produces flow log records
✓ a cloud api for "{Instance}" in "api" ✓ I call "{api}" with "GetServiceAPI" using argument "vpc" ✓ I refer to "{result}" as "vpcService" ✓ I refer to "{UID}" as "TargetVpcId" ✓ I call "{vpcService}" with "PrepareFlowLogDeliveryObservation" using argument "{TargetVpcId}" ✓ I call "{vpcService}" with "GenerateTestTraffic" using argument "{TargetVpcId}" ✓ I refer to "{result.ResourceId}" as "TestResourceId" ✓ I refer to "{result.CleanupDeleted}" as "TrafficCleanupDeleted" ✓ I call "{vpcService}" with "ObserveRecentFlowLogDelivery" using argument "{TargetVpcId}" ✓ I refer to "{result.RecordsObserved}" as "RecordsObserved" ✓ I call "{vpcService}" with "DeleteTestResource" using argument "{TestResourceId}" ✓ "{result.Deleted}" is true ✓ "{TrafficCleanupDeleted}" is true ✗ "{RecordsObserved}" is true - Error: expected {RecordsObserved} to be truthy, got false (type: bool)
vpc-022fefc877eaaa292
vpc
Behavioral check (active): traffic produces flow log records
PASS
Behavioural check (active): resource launched in public subnet is not assigned an external IP
✓ a cloud api for "{Instance}" in "api" ✓ I call "{api}" with "GetServiceAPI" using argument "vpc" ✓ I refer to "{result}" as "vpcService" ✓ I refer to "{UID}" as "TargetVpcId" ✓ I call "{vpcService}" with "SelectPublicSubnetForTest" using argument "{TargetVpcId}" ✓ I refer to "{result.SubnetId}" as "TestSubnetId" ✓ I call "{vpcService}" with "CreateTestResourceInSubnet" using argument "{TestSubnetId}" ✓ I refer to "{result.ResourceId}" as "TestResourceId" ✓ I call "{vpcService}" with "GetResourceExternalIpAssignment" using argument "{TestResourceId}" ✓ I refer to "{result.HasExternalIp}" as "HasExternalIp" ✓ "{HasExternalIp}" is false ✓ I call "{vpcService}" with "DeleteTestResource" using argument "{TestResourceId}" ✓ "{result.Deleted}" is true
vpc-0538ea308fdf4f8c4
vpc
Behavioural check (active): resource launched in public subnet is not assigned an external IP
PASS
Behavioral check (active): traffic produces flow log records
✓ a cloud api for "{Instance}" in "api" ✓ I call "{api}" with "GetServiceAPI" using argument "vpc" ✓ I refer to "{result}" as "vpcService" ✓ I refer to "{UID}" as "TargetVpcId" ✓ I call "{vpcService}" with "PrepareFlowLogDeliveryObservation" using argument "{TargetVpcId}" ✓ I call "{vpcService}" with "GenerateTestTraffic" using argument "{TargetVpcId}" ✓ I refer to "{result.ResourceId}" as "TestResourceId" ✓ I refer to "{result.CleanupDeleted}" as "TrafficCleanupDeleted" ✓ I call "{vpcService}" with "ObserveRecentFlowLogDelivery" using argument "{TargetVpcId}" ✓ I refer to "{result.RecordsObserved}" as "RecordsObserved" ✓ I call "{vpcService}" with "DeleteTestResource" using argument "{TestResourceId}" ✓ "{result.Deleted}" is true ✓ "{TrafficCleanupDeleted}" is true ✓ "{RecordsObserved}" is true
vpc-0538ea308fdf4f8c4
vpc
Behavioral check (active): traffic produces flow log records