This repository was archived by the owner on Sep 16, 2026. It is now read-only.
forked from panther-labs/panther-analysis
-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathMakefile
More file actions
123 lines (96 loc) · 5.4 KB
/
Copy pathMakefile
File metadata and controls
123 lines (96 loc) · 5.4 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
dirs := $(shell ls | grep -E 'policies|rules|global_helpers|models|templates|queries' | xargs)
UNAME := $(shell uname)
TEST_ARGS :=
ifeq ($(UNAME), Darwin)
install_pipenv_cmd = brew install pipenv
endif
## help: Show this help message
help: ## Show this help message
@echo "Available commands:"
@grep -E '^[a-zA-Z_-]+:.*?## .*$$' $(MAKEFILE_LIST) | \
awk 'BEGIN {FS = ":.*?## "}; {printf " \033[36m%-30s\033[0m %s\n", $$1, $$2}'
.PHONY: help
## install-pipenv: Install pipenv using brew if not already installed
install-pipenv: ## Install pipenv using brew if not already installed
which pipenv || $(install_pipenv_cmd)
## vscode-config: Configure VSCode settings and launch configurations for this project
vscode-config: install-pipenv install ## Configure VSCode settings and launch configurations for this project
@echo "backing up existing vscode configs"
test -f .vscode/settings.json && cp .vscode/settings.json .vscode/settings_bak.json \
|| echo "no existing vscode settings.json file found. continuing"
test -f .vscode/launch.json && cp .vscode/launch.json .vscode/launch_bak.json \
|| echo "no existing vscode launch.json file found. continuing"
@echo "Creating new vscode config files"
cp .vscode/example_launch.json .vscode/launch.json
sed -e 's#XXX_pipenv_py_output_XXX#$(shell pipenv --py)#' .vscode/example_settings.json > .vscode/settings.json
which code && code .
## ci: Run linters and tests (suitable for CI environments)
ci: ## Run linters and tests (suitable for CI environments)
pipenv run $(MAKE) lint test
## deps: Sync dependencies from Pipfile.lock
deps: ## Sync dependencies from Pipfile.lock
pipenv sync --dev
## deps-update: Update dependencies in Pipfile.lock
deps-update: ## Update dependencies in Pipfile.lock
pipenv update
## global-helpers-unit-test: Run unit tests for global helpers
global-helpers-unit-test: ## Run unit tests for global helpers
pipenv run python -m unittest global_helpers/*_test.py
## data-models-unit-test: Run unit tests for data models
data-models-unit-test: ## Run unit tests for data models
pipenv run python -m unittest data_models/*_test.py
## lint: Run all linters (pylint, bandit, isort, black checks)
lint: lint-pylint lint-fmt ## Run all linters (pylint, bandit, isort, black checks)
## lint-pylint: Run pylint, bandit, and isort checks
lint-pylint: ## Run pylint, bandit, and isort checks
pipenv run bandit -r $(dirs)
pipenv run pylint $(dirs)
pipenv run isort --profile=black --check-only $(dirs)
## lint-fmt: Check code formatting using black
lint-fmt: ## Check code formatting using black
@echo Checking python file formatting with the black code style checker
pipenv run black --line-length=100 --check $(dirs)
## lint-mitre: Run MITRE mapping check script
lint-mitre: ## Run MITRE mapping check script
pipenv run python3 ./.scripts/mitre_mapping_check.py
## venv: Sync dependencies (alias for deps)
venv: ## Sync dependencies (alias for deps)
pipenv sync --dev
## pat-update: Update the panther-analysis-tool dependency
pat-update: ## Update the panther-analysis-tool dependency
pipenv update panther-analysis-tool
## fmt: Format code using isort and black
fmt: ## Format code using isort and black
pipenv run isort --profile=black $(dirs)
pipenv run black --line-length=100 $(dirs)
## run-pre-commit-hooks: Run pre-commit hooks on all files
run-pre-commit-hooks: ## Run pre-commit hooks on all files
@echo "Running pre-commit hooks on all files..."
pipenv run pre-commit run --all-files
## install: Install all project dependencies (dev included)
install: ## Install all project dependencies (dev included)
pipenv sync --dev
## install-pre-commit-hooks: Install pre-commit hooks into .git/hooks
install-pre-commit-hooks: ## Install pre-commit hooks into .git/hooks
pipenv run pre-commit install
## test: Run unit tests and panther_analysis_tool tests
test: global-helpers-unit-test data-models-unit-test ## Run unit tests and panther_analysis_tool tests
pipenv run panther_analysis_tool test $(TEST_ARGS)
# Used by Panther team to update deprecated.txt
## check-deprecated: Check for deprecated rules (internal use)
check-deprecated: ## Check for deprecated rules (internal use)
pipenv run python3 ./.scripts/deleted_rules.py check
# Used by Panther customers to delete detection content in deprecated.txt from their Panther instance
## remove-deprecated: Remove deprecated rules from Panther instance (customer use)
remove-deprecated: ## Remove deprecated rules from Panther instance (customer use)
pipenv run python3 ./.scripts/deleted_rules.py remove
## docker-build: Build the Docker image for panther-analysis
docker-build: ## Build the Docker image for panther-analysis
docker build -t panther-analysis:latest .
## docker-test: Run tests within the Docker container
docker-test: ## Run tests within the Docker container
docker run --mount "type=bind,source=${CURDIR},target=/home/panther-analysis" panther-analysis:latest make test TEST_ARGS="$(TEST_ARGS)"
## docker-lint: Run linters within the Docker container
docker-lint: ## Run linters within the Docker container
docker run --mount "type=bind,source=${CURDIR},target=/home/panther-analysis" panther-analysis:latest make lint
.PHONY: help install-pipenv vscode-config ci deps deps-update global-helpers-unit-test data-models-unit-test lint lint-pylint lint-fmt lint-mitre venv pat-update fmt run-pre-commit-hooks install install-pre-commit-hooks test check-deprecated remove-deprecated docker-build docker-test docker-lint