-
Feature
-
Resolution: Unresolved
-
Undefined
-
None
-
None
-
Product / Portfolio Work
-
False
-
-
False
-
Not Selected
-
0% To Do, 100% In Progress, 0% Done
Discription
- Implement a profile that aligns with control guidance in CIS OpenShift 1.8.0
(https://www.cisecurity.org/benchmark/kubernetes) - Customer Jira: https://access.redhat.com/support/cases/04226934
Why is this important?
- CIS is widely used across all industries and verticals - as such, we typically get asked to update our profile implementations when CIS releases new versions so that users assert they're using the most recent guidance
Acceptance Criteria
- Compliance Operator contains a new profile for CIS OpenShift 1.8.0
- Periodic testing that runs the profile against all supported versions of OpenShift, and asserts findings
Dependencies (internal and external)
Previous Work (Optional):
- …
Open questions::
- …
Done Checklist
- CI - CI is running, tests are automated and merged.
- Release Enablement <link to Feature Enablement Presentation>
- DEV - Upstream code and tests merged: <link to meaningful PR or GitHub Issue>
- DEV - Upstream documentation merged: <link to meaningful PR or GitHub Issue>
- DEV - Downstream build attached to advisory: <link to errata>
- QE - Test plans in Polarion: <link or reference to Polarion>
- QE - Automated tests merged: <link or reference to automated tests>
- DOC - Downstream documentation merged: <link to meaningful PR>