-
Notifications
You must be signed in to change notification settings - Fork 161
secureCodeBox CLI (scbctl) #189
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Comments
I dont think the cli should handle the install steps. The creating / starting scans seems like a more important usecase to me, as the starting of scans can currently be quite cumbersome, as it requires a scan manifest in the localfiles system. Having a "simple cli" with a "scan" command e.g. |
We have a convenience script for installation though. |
Hello everyone, my name is Thibaut Batale! I'm a final year computer science undergraduate, I'm interested in this project "adding a secureCodeBox CLI" and currently drafting a proposal for it. Just wanted to confirm my thoughts, the main priority commands to build during this term are the create and observe scanners commands. Followed by update and delete scanners commands ... |
Hi @Freedisch awesome :) The prioritise are as described in the issue description.
Deletion of scans i don't think should be handled by a custom cli as they are already possible to do with a single |
Is your feature request related to a problem? Please describe.
As user / developer of the secureCodeBox I would like to interact with the secureCodeBox via an unified CLI to fulfill tasks such as installing, start, update and delete scanners / hooks, generate stubs for new scanners / hooks
Describe the solution you'd like
There is a CLI tool to:
e.g.
scbctl scan amass enum -d example.com
to directly create aScan
with a scanTypeamass
and the parameters:["enum", "-d", "example.com"]
. Ideally the cli would also have a paramters to automatically "follow" the scans progress to view the logs of scanner & parser and show a summary of the results.ScheduledScan
se.g.
scbctl trigger --namespace internal-scans daily-network-scan
to directly trigger a new Scan for thedaily-network-scan
Scheduled ScanAdditional context
A simple implementation could be possible using Cobra
For a previous prototype version of the secureCodeBox there used to be a command line with the ability to start and observe scans, a example scan run can be seen in this video 😛:
scbctl.mp4
The text was updated successfully, but these errors were encountered: