示例#1
0
def upload(target, scan_id, date_time, project_id, scan_status, scanner, data):
    """

    :param project_name:
    :param scan_id:
    :param date_time:
    :param project_id:
    :param scan_status:
    :param scanner:
    :param username:
    :param data:
    :return:
    """
    scan_dump = StaticScansDb(
        project_name=target,
        scan_id=scan_id,
        date_time=date_time,
        project_id=project_id,
        scan_status=scan_status,
        scanner=scanner,
    )
    scan_dump.save()

    if scanner == "Bandit":
        bandit_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Retirejs":
        retirejs_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Clair":
        clair_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Trivy":
        trivy_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Npmaudit":
        npmaudit_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Nodejsscan":
        nodejsscan_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Semgrep":
        semgrep_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Tfsec":
        tfsec_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Whitesource":
        whitesource_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Gitlabsast":
        gitlabsast_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Gitlabcontainerscan":
        gitlabcontainerscan_report_json(
            data=data, project_id=project_id, scan_id=scan_id
        )
    elif scanner == "Gitlabsca":
        gitlabsast_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Gitlabsca":
        gitlabsca_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Twistlock":
        twistlock_report_json(data=data, project_id=project_id, scan_id=scan_id)
    elif scanner == "Brakeman_scan":
        brakeman_report_json(data=data, project_id=project_id, scan_id=scan_id)
示例#2
0
def report_import(request):
    """

    :param request:
    :return:
    """
    all_project = project_db.objects.all()

    if request.method == "POST":
        project_id = request.POST.get("project_id")
        scanner = request.POST.get("scanner")
        json_file = request.FILES['jsonfile']
        project_name = request.POST.get("project_name")
        scan_id = uuid.uuid4()
        scan_status = '100'
        if scanner == "bandit_scan":
            date_time = datetime.now()
            scan_dump = bandit_scan_db(
                project_name=project_name,
                scan_id=scan_id,
                date_time=date_time,
                project_id=project_id,
                scan_status=scan_status,
            )
            scan_dump.save()
            j = json_file.read()
            data = json.loads(j)
            print data
            bandit_report_json(data=data,
                               project_id=project_id,
                               scan_id=scan_id)

            return HttpResponseRedirect("/banditscanner/banditscans_list")

        if scanner == "retirejs_scan":
            date_time = datetime.now()
            scan_dump = retirejs_scan_db(
                project_name=project_name,
                scan_id=scan_id,
                date_time=date_time,
                project_id=project_id,
                scan_status=scan_status,
            )
            scan_dump.save()
            j = json_file.read()
            data = json.loads(j)
            retirejs_report_json(data=data,
                                 project_id=project_id,
                                 scan_id=scan_id)

            return HttpResponseRedirect("/retirejsscanner/retirejsscans_list")

    return render(request, 'report_import.html', {'all_project': all_project})
示例#3
0
def report_import(request):
    """

    :param request:
    :return:
    """
    username = request.user.username
    all_project = project_db.objects.filter(username=username)

    if request.method == "POST":
        project_id = request.POST.get("project_id")
        scanner = request.POST.get("scanner")
        json_file = request.FILES['jsonfile']
        project_name = request.POST.get("project_name")
        scan_id = uuid.uuid4()
        scan_status = '100'
        if scanner == "bandit_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = bandit_scan_db(project_name=project_name,
                                           scan_id=scan_id,
                                           date_time=date_time,
                                           project_id=project_id,
                                           scan_status=scan_status,
                                           username=username
                                           )
                scan_dump.save()
                bandit_report_json(data=data,
                                   project_id=project_id,
                                   scan_id=scan_id,
                                   username=username
                                   )

                return HttpResponseRedirect(reverse('banditscanner:banditscans_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "retirejs_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = retirejs_scan_db(project_name=project_name,
                                             scan_id=scan_id,
                                             date_time=date_time,
                                             project_id=project_id,
                                             scan_status=scan_status,
                                             username=username
                                             )
                scan_dump.save()
                retirejs_report_json(data=data,
                                     project_id=project_id,
                                     scan_id=scan_id,
                                     username=username
                                     )

                return HttpResponseRedirect(reverse('retirejsscanner:retirejsscans_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "clair_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = clair_scan_db(project_name=project_name,
                                          scan_id=scan_id,
                                          date_time=date_time,
                                          project_id=project_id,
                                          scan_status=scan_status,
                                          username=username
                                          )
                scan_dump.save()
                clair_report_json(data=data,
                                  project_id=project_id,
                                  scan_id=scan_id,
                                  username=username
                                  )
                return HttpResponseRedirect(reverse('clair:clair_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "trivy_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = trivy_scan_db(project_name=project_name,
                                          scan_id=scan_id,
                                          date_time=date_time,
                                          project_id=project_id,
                                          scan_status=scan_status,
                                          username=username,
                                          )
                scan_dump.save()
                trivy_json_report_parser.trivy_report_json(project_id=project_id,
                                                           scan_id=scan_id,
                                                           data=data,
                                                           username=username
                                                           )
                return HttpResponseRedirect(reverse('trivy:trivy_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "npmaudit_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = npmaudit_scan_db(project_name=project_name,
                                             scan_id=scan_id,
                                             date_time=date_time,
                                             project_id=project_id,
                                             scan_status=scan_status,
                                             username=username
                                             )
                scan_dump.save()
                npm_audit_report_json.npmaudit_report_json(project_id=project_id,
                                                           scan_id=scan_id,
                                                           data=data,
                                                           username=username
                                                           )
                return HttpResponseRedirect(reverse('npmaudit:npmaudit_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "nodejsscan_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = nodejsscan_scan_db(project_name=project_name,
                                               scan_id=scan_id,
                                               date_time=date_time,
                                               project_id=project_id,
                                               scan_status=scan_status,
                                               username=username
                                               )
                scan_dump.save()
                nodejsscan_report_json.nodejsscan_report_json(project_id=project_id,
                                                              scan_id=scan_id,
                                                              data=data,
                                                              username=username
                                                              )
                return HttpResponseRedirect(reverse('nodejsscan:nodejsscan_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "semgrepscan_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = semgrepscan_scan_db(project_name=project_name,
                                                scan_id=scan_id,
                                                date_time=date_time,
                                                project_id=project_id,
                                                scan_status=scan_status,
                                                username=username
                                                )
                scan_dump.save()
                semgrep_json_report_parser.semgrep_report_json(project_id=project_id,
                                                               scan_id=scan_id,
                                                               data=data,
                                                               username=username
                                                               )
                return HttpResponseRedirect(reverse('semgrepscan:semgrepscan_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "tfsec_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = tfsec_scan_db(project_name=project_name,
                                          scan_id=scan_id,
                                          date_time=date_time,
                                          project_id=project_id,
                                          scan_status=scan_status,
                                          username=username
                                          )
                scan_dump.save()
                tfsec_report_parser.tfsec_report_json(project_id=project_id,
                                                      scan_id=scan_id,
                                                      data=data,
                                                      username=username
                                                      )
                return HttpResponseRedirect(reverse('tfsec:tfsec_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "whitesource_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = whitesource_scan_db(project_name=project_name,
                                                scan_id=scan_id,
                                                date_time=date_time,
                                                project_id=project_id,
                                                scan_status=scan_status,
                                                username=username
                                                )
                scan_dump.save()
                whitesource_json_report_parser.whitesource_report_json(project_id=project_id,
                                                                       scan_id=scan_id,
                                                                       data=data,
                                                                       username=username
                                                                       )
                return HttpResponseRedirect(reverse('whitesource:whitesource_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "inspec_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = inspec_scan_db(project_name=project_name,
                                           scan_id=scan_id,
                                           date_time=date_time,
                                           project_id=project_id,
                                           scan_status=scan_status,
                                           username=username
                                           )
                scan_dump.save()
                inspec_report_json(data=data,
                                   project_id=project_id,
                                   scan_id=scan_id,
                                   username=username
                                   )
                return HttpResponseRedirect(reverse('inspec:inspec_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "dockle_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = dockle_scan_db(project_name=project_name,
                                           scan_id=scan_id,
                                           date_time=date_time,
                                           project_id=project_id,
                                           scan_status=scan_status,
                                           username=username
                                           )
                scan_dump.save()
                dockle_report_json(data=data,
                                   project_id=project_id,
                                   scan_id=scan_id,
                                   username=username
                                   )

                return HttpResponseRedirect(reverse('dockle:dockle_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "gitlabsast_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = gitlabsast_scan_db(project_name=project_name,
                                               scan_id=scan_id,
                                               date_time=date_time,
                                               project_id=project_id,
                                               scan_status=scan_status,
                                               username=username,
                                               )
                scan_dump.save()
                gitlab_sast_json_report_parser.gitlabsast_report_json(project_id=project_id,
                                                                      scan_id=scan_id,
                                                                      data=data,
                                                                      username=username
                                                                      )
                return HttpResponseRedirect(reverse('gitlabsast:gitlabsast_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "gitlabcontainerscan_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = gitlabcontainerscan_scan_db(project_name=project_name,
                                                        scan_id=scan_id,
                                                        date_time=date_time,
                                                        project_id=project_id,
                                                        scan_status=scan_status,
                                                        username=username,
                                                        )
                scan_dump.save()
                gitlab_container_json_report_parser.gitlabcontainerscan_report_json(project_id=project_id,
                                                                                    scan_id=scan_id,
                                                                                    data=data,
                                                                                    username=username
                                                                                    )
                return HttpResponseRedirect(reverse('gitlabcontainerscan:gitlabcontainerscan_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

        if scanner == "gitlabsca_scan":
            try:
                date_time = datetime.now()

                j = json_file.read()
                data = json.loads(j)
                scan_dump = gitlabsca_scan_db(project_name=project_name,
                                              scan_id=scan_id,
                                              date_time=date_time,
                                              project_id=project_id,
                                              scan_status=scan_status,
                                              username=username,
                                              )
                scan_dump.save()
                gitlab_sca_json_report_parser.gitlabsca_report_json(project_id=project_id,
                                                                    scan_id=scan_id,
                                                                    data=data,
                                                                    username=username
                                                                    )
                return HttpResponseRedirect(reverse('gitlabsca:gitlabsca_list'))
            except:
                messages.error(request, "File Not Supported")
                return render(request, 'report_import.html', {'all_project': all_project})

    return render(request, 'report_import.html', {'all_project': all_project})
示例#4
0
def report_import(request):
    """

    :param request:
    :return:
    """
    all_project = project_db.objects.all()

    if request.method == "POST":
        project_id = request.POST.get("project_id")
        scanner = request.POST.get("scanner")
        json_file = request.FILES['jsonfile']
        project_name = request.POST.get("project_name")
        scan_id = uuid.uuid4()
        scan_status = '100'
        if scanner == "bandit_scan":
            date_time = datetime.now()
            scan_dump = bandit_scan_db(
                project_name=project_name,
                scan_id=scan_id,
                date_time=date_time,
                project_id=project_id,
                scan_status=scan_status,
            )
            scan_dump.save()
            j = json_file.read()
            data = json.loads(j)
            bandit_report_json(data=data,
                               project_id=project_id,
                               scan_id=scan_id)

            return HttpResponseRedirect(
                reverse('banditscanner:banditscans_list'))

        if scanner == "retirejs_scan":
            date_time = datetime.now()
            scan_dump = retirejs_scan_db(
                project_name=project_name,
                scan_id=scan_id,
                date_time=date_time,
                project_id=project_id,
                scan_status=scan_status,
            )
            scan_dump.save()
            j = json_file.read()
            data = json.loads(j)
            retirejs_report_json(data=data,
                                 project_id=project_id,
                                 scan_id=scan_id)

            return HttpResponseRedirect(
                reverse('retirejsscanner:retirejsscans_list'))

        if scanner == "clair_scan":
            date_time = datetime.now()
            scan_dump = clair_scan_db(
                project_name=project_name,
                scan_id=scan_id,
                date_time=date_time,
                project_id=project_id,
                scan_status=scan_status,
            )
            scan_dump.save()
            j = json_file.read()
            data = json.loads(j)
            clair_report_json(data=data,
                              project_id=project_id,
                              scan_id=scan_id)
            return HttpResponseRedirect(reverse('clair:clair_list'))

        if scanner == "trivy_scan":
            date_time = datetime.now()
            scan_dump = trivy_scan_db(
                project_name=project_name,
                scan_id=scan_id,
                date_time=date_time,
                project_id=project_id,
                scan_status=scan_status,
            )
            scan_dump.save()
            j = json_file.read()
            data = json.loads(j)
            trivy_json_report_parser.trivy_report_json(project_id=project_id,
                                                       scan_id=scan_id,
                                                       data=data)
            return HttpResponseRedirect(reverse('trivy:trivy_list'))

        if scanner == "inspec_scan":
            date_time = datetime.now()
            scan_dump = inspec_scan_db(
                project_name=project_name,
                scan_id=scan_id,
                date_time=date_time,
                project_id=project_id,
                scan_status=scan_status,
            )
            scan_dump.save()
            j = json_file.read()
            data = json.loads(j)
            inspec_report_json(data=data,
                               project_id=project_id,
                               scan_id=scan_id)

            return HttpResponseRedirect(reverse('inspec:inspec_list'))

    return render(request, 'report_import.html', {'all_project': all_project})