Posture Control (ZPC)

Supported IaC Templates and Functions

The Zscaler IaC Scan tool can scan various types of IaC templates and parse specific functions for each template type.

Supported Templates

The Zscaler IaC Scan supports the following IaC templates and versions:

  • AWS Cloud Formation (JSON, YAML): All versions
  • Kubernetes: All versions
  • Azure Resource Manager (ARM): All versions

ZPC provides support for linked templates. If an ARM template is linked to a remote template, then ZPC downloads the remote template, performs the scan on the remote template, and also reports violations that are detected in the linked templates. To learn more about linked and nested templates, see the Microsoft Azure documentation.

  • Helm: Version 3 and above
  • Terraform: Version 0.14 and above
  • Terraform Plan: Versions 0.x and 1.x

Terraform Plan supports all CI/CD Pipelines, except for Jenkins in Pipeline mode only. Also, some alert properties are not captured for Terraform Plan templates. To learn more, see About Alerts.

Supported Functions

The Zscaler IaC Scan supports various functions for the following templates:

Related Articles
Supported IaC Templates and FunctionsSupported OS Versions for IaC ScanningParsing Bicep FilesSkipping IaC PoliciesDisabling IaC ScanningEditing or Deleting an IaC IntegrationViewing IaC Alert Status