Uploaded image for project: 'Cloud Infrastructure Security & Compliance'
  1. Cloud Infrastructure Security & Compliance
  2. CMP-3278

Misleading rule associated with PCI-DSS 6.4.2 and BSI

XMLWordPrintable

    • Icon: Bug Bug
    • Resolution: Unresolved
    • Icon: Normal Normal
    • None
    • compliance-operator-1.6.0
    • Compliance Operator
    • None
    • Quality / Stability / Reliability
    • False
    • Hide

      None

      Show
      None
    • False

      PCI-DSS 6.4.2 control and bsi_sys_1_6  is connected to [security_profiles_operator_exists rule (https://github.com/ComplianceAsCode/content/blob/master/applications/openshift/confinement/security_profiles_operator_exists/rule.yml)

      While it is true that SPO helps you create seccomp and SElinux profiles, the fact that the operator is installed doesn’t really mean that the profiles are actually created.

      We need to find a better check for this control and remove. the association with this specific rule.

              lbragsta@redhat.com Lance Bragstad
              rh-ee-masimonm Maria Simon Marcos
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated: