cloudformation-guard icon indicating copy to clipboard operation
cloudformation-guard copied to clipboard

Validate - Sub or Ref and TemplateUrl

Open govindrk opened this issue 4 years ago • 2 comments

Is your feature request related to a problem? Please describe.

We have lot of nested stacks and reference the same with TemplateURL and parameters - Ref and Sub.

Describe the solution you'd like When i test the cloud formation for compliance using Guard, the TemplateURL is not validated, both Ref and Sub are also not working.

I am not sure how to get this validate locally and as well in S3. Please provide guidance on how to go about.

regards govind

govindrk avatar Oct 28 '21 07:10 govindrk

We also have a use case for cfn-guard be able to validate nested stacks. This would be a huge thumbs up if there was some way of get this to work!

TheFlexican avatar Dec 03 '21 13:12 TheFlexican

Thanks @govindrk and @TheFlexican for highlighting this issue, noted down that we should be addressing real-life scenarios where CFN template spans across multiple files. We'll research more on how can we achieve that.

Meanwhile, the closest thing that we do support is to use --input-parameters along with --data argument. But even that has a limitation of root keys to be mutually exclusive, as in we don't support taking a union of two files.

Detailed documentation for this feature could be found here under section Dynamic data lookup for inspection via multiple data files.

akshayrane avatar Oct 19 '22 20:10 akshayrane