> For the complete documentation index, see [llms.txt](https://docs.opsmx.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.opsmx.com/code-to-cloud-security-and-scanners/cloud-security/iac-scanning/how-to-do-iac-scan.md).

# How to do IAC Scan

The IAC scan option is added as part of the Adhoc scan. The ability to scan AI/ML Models published on HuggingFace using NBDefence and Garak tools is added as part of this scan option.

### To Access IAC Scan&#x20;

* Click on **Scan Now** button at the top right corner of the screen.

<figure><img src="https://content.gitbook.com/content/xDmLTMQiowMHZ4CQPCvT/blobs/TJqRKG416uIrq0wp7KiV/scan%20now%20.png" alt=""><figcaption></figcaption></figure>

* In the screen that appears, select **IAC Scan** from the left panel.

### To Add a Project&#x20;

* To add or update a new project with IAC scan configurations, for scanning, click **Add Project**.&#x20;

<figure><img src="https://591284771-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FxDmLTMQiowMHZ4CQPCvT%2Fuploads%2F7zvj7TucrXHwjkT0neX0%2Fiac%20add%20project.png?alt=media&amp;token=1271782f-3f23-4623-88d9-865c880d3369" alt=""><figcaption></figcaption></figure>

* The **Create Project** details page is displayed as shown below. Enter the details for the following fields:

<figure><img src="https://591284771-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FxDmLTMQiowMHZ4CQPCvT%2Fuploads%2FQ2K8NU5R7QynhqDAmzQR%2Fiac%202.png?alt=media&amp;token=7bdf182f-f4f6-45f7-bc2c-40f814c88a7b" alt=""><figcaption></figcaption></figure>

* **Name** : Enter a name for the project.&#x20;
* **Team** : Select the team for which you want to create the project.&#x20;
* **Scan Type** : The default type is IAC Scan.&#x20;
* **Platform** : Select the platform type, the platform where the code resides (Github, Gitlab Server, Bitbucket, Bitbucket Server, Azure, Azure Server) for the project.
* **Account** : Choose the needed account that has been integrated for the selected platform. If no account is available for the selected platform then click **Add Account**.
  * The integration page is displayed. You can add a new account.&#x20;
* **Organization / Workspace** : Choose the organization or workspace that the selected account has access to.&#x20;
* **Scan Level** : Select the scan level; either organization level or repository level that needs to be scanned.&#x20;
* **Configuration** : Set the configuration details, and schedule the auto scan time.
  * **Repo /Project** : Select the repo or project name for which the scan needs to be executed.&#x20;
  * **Branch** :  Select the branch name for which the scan needs to be executed.&#x20;
  * **Branch Pattern** : Select the branch pattern for which the scan needs to be executed.&#x20;
  * **Scan Upto** : Select the branch limit for which the scan needs to be executed. (number of branches to be scanned)
  * **Schedule Auto Scan** :  Select the time range during which the scan needs to be rerun automatically.&#x20;
* Click Save.&#x20;

The project gets added for scanning.

### Saving Configuration &#x20;

* After adding the configuration details you can click the **Save Configuration** option to save the adding details and trigger the scan at a later period. &#x20;

<figure><img src="https://591284771-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FxDmLTMQiowMHZ4CQPCvT%2Fuploads%2FBCNwNvlEqrYwWbvUET0a%2Fimage.png?alt=media&amp;token=959e09a0-4534-40a8-b841-5c4b63fc0aea" alt=""><figcaption></figcaption></figure>

* The added project displays in the list with a **Paused** scan status.

<figure><img src="https://591284771-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FxDmLTMQiowMHZ4CQPCvT%2Fuploads%2FRTO30NcwpmJkCcoRYtZH%2Fpaused.png?alt=media&amp;token=52063958-2591-4dc9-b016-a13ca20fb656" alt=""><figcaption></figcaption></figure>

* When you want to scan the saved project you can click the Trigger Scan option to initiate the scan.

<figure><img src="https://591284771-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FxDmLTMQiowMHZ4CQPCvT%2Fuploads%2FtFZZ5gq0lBbbaCXEC2XF%2Fsaved%20confi.png?alt=media&amp;token=76066937-800c-4363-afae-4675541e52b0" alt=""><figcaption></figcaption></figure>

### To Upload a Project

* To upload a project from your local, for scanning, click **Upload Project**.

<figure><img src="https://591284771-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FxDmLTMQiowMHZ4CQPCvT%2Fuploads%2FCu0vovnbkcObJrCFqjHU%2Fiac%201.png?alt=media&amp;token=2d4523a6-dd7a-400a-8559-22e8ceeac0f2" alt=""><figcaption></figcaption></figure>

* Click **Upload File** and select the json file that you want to add for scanning. &#x20;

<figure><img src="https://591284771-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FxDmLTMQiowMHZ4CQPCvT%2Fuploads%2FfbEwuhGg5VFxz7IqiwCp%2Fiac%203.png?alt=media&amp;token=3559fd1e-0499-43e1-8714-c63572e90137" alt=""><figcaption></figcaption></figure>

* Click **Save**.&#x20;

The file gets added for scanning.

### To View and Interpret Scan Results&#x20;

Once the scan is complete, OpsMx generates the overall results and they are displayed as shown below: <br>

* Repos Registered
* Total Branches
* Total Scans
* Total Projects
* Auto Scan Enabled Repos

<figure><img src="https://591284771-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FxDmLTMQiowMHZ4CQPCvT%2Fuploads%2F95PXSsXuYK9TjEKxjrPM%2Fiac%20results.png?alt=media&amp;token=0b52bdba-3b97-4277-889b-628541bf0a4f" alt=""><figcaption></figcaption></figure>

The panel at the bottom displays the project details. On expanding each project you can view the complete details of it.

{% hint style="info" %}
The current status of the scan (completed, pending or failed) is displayed to notify the status of the project.&#x20;
{% endhint %}

* Click the **View** option in the **Action** button, to view the IAC scan results of the project.&#x20;

<figure><img src="https://content.gitbook.com/content/xDmLTMQiowMHZ4CQPCvT/blobs/OaCMW2XHmC8MoPjuiDpP/scan%20now%202%20.png" alt=""><figcaption></figcaption></figure>

* The results page displays the complete data of the scan details.&#x20;
  * On clicking the **Download** button, the scan results are downloaded in .json or .csv format.
  * On clicking Report, the scan results are downloaded in a report format.&#x20;
  * On clicking **Go to Artifact Page**, you are redirected to the [IAC Scan Artifact](https://docs.opsmx.com/code-to-cloud-security-and-scanners/artifact-security/iac-scan-artifacts) page.&#x20;

### Quick Actions

Each project displays 5 quick action buttons as shown:

<figure><img src="https://591284771-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FxDmLTMQiowMHZ4CQPCvT%2Fuploads%2FEPL8i4MdKKq5tkIPzeNd%2Fiac%205%20new.png?alt=media&amp;token=abe61318-12ba-4f05-9753-ca467c1189f6" alt=""><figcaption></figcaption></figure>

1. **Trigger Scan** – Initiates a new scan for the project or runs a scan using a previously saved configuration.
2. **Integrations** – Opens the project's **Integrations** page, where all available integrations for the project are listed.
3. **Policies** – Displays the list of policies that have been configured for the project.
4. **Edit Project** – Opens the project configuration settings, allowing you to modify the project's details and scan settings.
5. **Delete** – Removes the project from the system.
