Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Issue-1466: Enhance the pdf report generation #1804

Closed
Show file tree
Hide file tree
Changes from 2 commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
64 changes: 47 additions & 17 deletions deepfence_worker/tasks/reports/data.go
Original file line number Diff line number Diff line change
Expand Up @@ -41,8 +41,9 @@ type ScanData[T any] struct {
}

type NodeWiseData[T any] struct {
SeverityCount map[string]map[string]int32
ScanData map[string]ScanData[T]
SeverityCount map[string]map[string]int32
ScanData map[string]ScanData[T]
OverallSeverityCounts map[string]int32
}

func searchScansFilter(params sdkUtils.ReportParams) rptSearch.SearchScanReq {
Expand Down Expand Up @@ -118,7 +119,17 @@ func scanResultFilter(levelKey string, levelValues []string, masked []bool) repo

return filter
}
func CalculateOverallSeverityCounts(severityCountsList ...map[string]int32) map[string]int32 {
overallSeverityCounts := make(map[string]int32)
ramanan-ravi marked this conversation as resolved.
Show resolved Hide resolved

for _, severityCounts := range severityCountsList {
for severity, count := range severityCounts {
overallSeverityCounts[severity] += count
}
}

return overallSeverityCounts
}
func getVulnerabilityData(ctx context.Context, params sdkUtils.ReportParams) (*Info[model.Vulnerability], error) {

if params.Filters.MostExploitableReport {
Expand Down Expand Up @@ -151,11 +162,14 @@ func getVulnerabilityData(ctx context.Context, params sdkUtils.ReportParams) (*I
params.Filters.SeverityOrCheckType, params.Filters.AdvancedReportFilters.Masked)

nodeWiseData := NodeWiseData[model.Vulnerability]{
Copy link
Collaborator

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This was there before that PR but this could be simplified a lot across model.Secret, model.Vulnerability and so on

SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.Vulnerability]),
SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.Vulnerability]),
OverallSeverityCounts: make(map[string]int32),
}

overallSeverityCounts := CalculateOverallSeverityCounts()
for _, s := range scans {
overallSeverityCounts = CalculateOverallSeverityCounts(overallSeverityCounts, s.SeverityCounts)
result, common, err := rptScans.GetScanResults[model.Vulnerability](
ctx, sdkUtils.NEO4JVulnerabilityScan, s.ScanID, severityFilter, model.FetchWindow{})
if err != nil {
Expand All @@ -171,6 +185,7 @@ func getVulnerabilityData(ctx context.Context, params sdkUtils.ReportParams) (*I
ScanResults: result,
}
}
nodeWiseData.OverallSeverityCounts = overallSeverityCounts

data := Info[model.Vulnerability]{
ScanType: VULNERABILITY,
Expand Down Expand Up @@ -200,13 +215,15 @@ func getMostExploitableVulnData(ctx context.Context, params sdkUtils.ReportParam
start time.Time = time.Now()
)
nodeWiseData := NodeWiseData[model.Vulnerability]{
SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.Vulnerability]),
SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.Vulnerability]),
OverallSeverityCounts: make(map[string]int32),
}
nodeKey := "most_exploitable_vulnerabilities"
nodeWiseData.SeverityCount[nodeKey] = make(map[string]int32)
nodeWiseData.ScanData[nodeKey] = ScanData[model.Vulnerability]{ScanResults: entries}
sevMap := nodeWiseData.SeverityCount[nodeKey]
nodeWiseData.OverallSeverityCounts = CalculateOverallSeverityCounts(nodeWiseData.OverallSeverityCounts, nodeWiseData.SeverityCount[nodeKey])
for _, entry := range entries {
count, present := sevMap[entry.CveSeverity]
if !present {
Expand Down Expand Up @@ -258,11 +275,13 @@ func getSecretData(ctx context.Context, params sdkUtils.ReportParams) (*Info[mod
params.Filters.SeverityOrCheckType, params.Filters.AdvancedReportFilters.Masked)

nodeWiseData := NodeWiseData[model.Secret]{
SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.Secret]),
SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.Secret]),
OverallSeverityCounts: make(map[string]int32),
}

overallSeverityCounts := CalculateOverallSeverityCounts()
for _, s := range scans {
overallSeverityCounts = CalculateOverallSeverityCounts(overallSeverityCounts, s.SeverityCounts)
ramanan-ravi marked this conversation as resolved.
Show resolved Hide resolved
result, common, err := rptScans.GetScanResults[model.Secret](
ctx, sdkUtils.NEO4JSecretScan, s.ScanID, severityFilter, model.FetchWindow{})
if err != nil {
Expand All @@ -278,6 +297,7 @@ func getSecretData(ctx context.Context, params sdkUtils.ReportParams) (*Info[mod
ScanResults: result,
}
}
nodeWiseData.OverallSeverityCounts = overallSeverityCounts

data := Info[model.Secret]{
ScanType: SECRET,
Expand Down Expand Up @@ -319,11 +339,13 @@ func getMalwareData(ctx context.Context, params sdkUtils.ReportParams) (*Info[mo
params.Filters.SeverityOrCheckType, params.Filters.AdvancedReportFilters.Masked)

nodeWiseData := NodeWiseData[model.Malware]{
SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.Malware]),
SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.Malware]),
OverallSeverityCounts: make(map[string]int32),
}

overallSeverityCounts := CalculateOverallSeverityCounts()
for _, s := range scans {
overallSeverityCounts = CalculateOverallSeverityCounts(overallSeverityCounts, s.SeverityCounts)
result, common, err := rptScans.GetScanResults[model.Malware](
ctx, sdkUtils.NEO4JMalwareScan, s.ScanID, severityFilter, model.FetchWindow{})
if err != nil {
Expand All @@ -339,6 +361,7 @@ func getMalwareData(ctx context.Context, params sdkUtils.ReportParams) (*Info[mo
ScanResults: result,
}
}
nodeWiseData.OverallSeverityCounts = overallSeverityCounts

data := Info[model.Malware]{
ScanType: MALWARE,
Expand Down Expand Up @@ -380,11 +403,13 @@ func getComplianceData(ctx context.Context, params sdkUtils.ReportParams) (*Info
params.Filters.SeverityOrCheckType, params.Filters.AdvancedReportFilters.Masked)

nodeWiseData := NodeWiseData[model.Compliance]{
SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.Compliance]),
SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.Compliance]),
OverallSeverityCounts: make(map[string]int32),
}

overallSeverityCounts := CalculateOverallSeverityCounts()
for _, s := range scans {
overallSeverityCounts = CalculateOverallSeverityCounts(overallSeverityCounts, s.SeverityCounts)
result, common, err := rptScans.GetScanResults[model.Compliance](
ctx, sdkUtils.NEO4JComplianceScan, s.ScanID, severityFilter, model.FetchWindow{})
if err != nil {
Expand All @@ -400,6 +425,7 @@ func getComplianceData(ctx context.Context, params sdkUtils.ReportParams) (*Info
ScanResults: result,
}
}
nodeWiseData.OverallSeverityCounts = overallSeverityCounts

data := Info[model.Compliance]{
ScanType: COMPLIANCE,
Expand Down Expand Up @@ -442,11 +468,14 @@ func getCloudComplianceData(ctx context.Context, params sdkUtils.ReportParams) (
params.Filters.SeverityOrCheckType, params.Filters.AdvancedReportFilters.Masked)

nodeWiseData := NodeWiseData[model.CloudCompliance]{
SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.CloudCompliance]),
SeverityCount: make(map[string]map[string]int32),
ScanData: make(map[string]ScanData[model.CloudCompliance]),
OverallSeverityCounts: make(map[string]int32),
}
overallSeverityCounts := CalculateOverallSeverityCounts()

for _, s := range scans {
overallSeverityCounts = CalculateOverallSeverityCounts(overallSeverityCounts, s.SeverityCounts)
result, common, err := rptScans.GetScanResults[model.CloudCompliance](
ctx, sdkUtils.NEO4JCloudComplianceScan, s.ScanID, severityFilter, model.FetchWindow{})
if err != nil {
Expand All @@ -462,6 +491,7 @@ func getCloudComplianceData(ctx context.Context, params sdkUtils.ReportParams) (
ScanResults: result,
}
}
nodeWiseData.OverallSeverityCounts = overallSeverityCounts

data := Info[model.CloudCompliance]{
ScanType: CLOUD_COMPLIANCE,
Expand Down
2 changes: 2 additions & 0 deletions deepfence_worker/tasks/reports/templates/base.gohtml
Original file line number Diff line number Diff line change
Expand Up @@ -256,6 +256,7 @@
}

</style>
<script src="https://go-echarts.github.io/go-echarts-assets/assets/echarts.min.js"></script>
</head>

<body>
Expand All @@ -265,6 +266,7 @@
{{ $scan_types := list "vulnerability" "secret" "malware" }}
{{ if mustHas .ScanType $scan_types }}
{{ template "summary-table" . }}
{{ template "piechart" . }}
{{ end }}

{{ if eq .ScanType "compliance" }}
Expand Down
75 changes: 75 additions & 0 deletions deepfence_worker/tasks/reports/templates/piechart.gohtml
Original file line number Diff line number Diff line change
@@ -0,0 +1,75 @@
{{ define "piechart" }}
<h3>Overall Summary:</h3>

{{ if .NodeWiseData.OverallSeverityCounts }}
<style>
.container {
display: flex;
justify-content: center;
align-items: center;
}

.item {
margin: auto;
}
</style>

<div class="container">
<div class="item" id="severityChart" style="width:900px;height:500px;"></div>
</div>
<div class="page-break"></div>

<script type="text/javascript">
"use strict";
var severityPieChart = echarts.init(document.getElementById('severityChart'), "white");
var severityChart_option = {
"animation": true,
"color": ["#f56682", "#f57600", "#ff9c32", "#e5c354", "#61717d", "#3ba272", "#fc8452", "#9a60b4", "#ea7ccc"],
"legend": {
"show": true,
"type": ""
},
"series": [{
"name": "Severity",
"type": "pie",
"smooth": false,
"connectNulls": false,
"showSymbol": false,
"waveAnimation": false,
"renderLabelForZeroData": false,
"selectedMode": false,
"animation": false,
"data": [{
"name": "Critical ({{ .NodeWiseData.OverallSeverityCounts.critical }})",
"value": {{ .NodeWiseData.OverallSeverityCounts.critical }}
},{
"name": "High ({{ .NodeWiseData.OverallSeverityCounts.high }})",
"value": {{ .NodeWiseData.OverallSeverityCounts.high }}
}, {
"name": "Medium ({{ .NodeWiseData.OverallSeverityCounts.medium }})",
"value": {{ .NodeWiseData.OverallSeverityCounts.medium }}
}, {
"name": "Low ({{ .NodeWiseData.OverallSeverityCounts.low }})",
"value": {{ .NodeWiseData.OverallSeverityCounts.low }}
}, {
"name": "Unknown ({{ .NodeWiseData.OverallSeverityCounts.unknown }})",
"value": {{ .NodeWiseData.OverallSeverityCounts.unknown }}
}],
"label": {
"show": true,
"position": "top",
"formatter": "{b} {d}%"
}
}],
"title": {
"text": "Unique Severity"
},
"tooltip": {
"show": false
}
};

severityPieChart.setOption(severityChart_option);
</script>
{{ end }}
{{ end }}
Original file line number Diff line number Diff line change
Expand Up @@ -20,11 +20,11 @@
{{ range $i, $v := $value.ScanResults }}
<tr>
<td style="width: 40px">{{ add1 $i }}</td>
<td style="width: 150px">{{ $v.Cve_id }}</td>
<td style="width: 300px">{{ $v.Cve_caused_by_package }}</td>
<td style="width: 65px">{{ $v.Cve_severity }}</td>
<td>{{ trunc 80 $v.Cve_description }}</td>
<td style="width: 35px; text-align: center;"><a style="text-decoration: none;" href="{{ $v.Cve_link }}"
<td style="width: 150px">{{ $v.CveID }}</td>
<td style="width: 300px">{{ $v.CveCausedByPackage }}</td>
<td style="width: 65px">{{ $v.CveSeverity }}</td>
<td>{{ trunc 80 $v.CveDescription }}</td>
<td style="width: 35px; text-align: center;"><a style="text-decoration: none;" href="{{ $v.CveLink }}"
target="_blank" rel="noopener noreferrer"><img height='15px'
src="" /></a>
</td>
Expand Down
Loading