Uploaded image for project: 'OpenShift API for Data Protection'
  1. OpenShift API for Data Protection
  2. OADP-1313 Remove creation/usage of velero-privileged SCC
  3. OADP-1316

[RedHat QE] Verify Task OADP-1313 - Remove creation/usage of velero-privileged SCC

XMLWordPrintable

    • Icon: Sub-task Sub-task
    • Resolution: Unresolved
    • Icon: Undefined Undefined
    • None
    • None
    • None
    • None
    • 4
    • False
    • Hide

      None

      Show
      None
    • False
    • ToDo
    • 0
    • 0.000
    • Very Likely
    • 0
    • None
    • Unset
    • Unknown

      velero-privileged SCC is causing the CIS benchmark to fail #576

      https://github.com/openshift/oadp-operator/blob/816cb838faa1983d8a34c09492561a6999ab0ddb/controllers/velero.go#L327
      https://github.com/openshift/oadp-operator/issues/576
      https://coreos.slack.com/archives/CHD1CSNAK/p1646060396759409

      Verification: OADP Operator no longer creates SecurityContextConstaints object named "velero-privileged" when DPA is created.

              Unassigned Unassigned
              mperetz@redhat.com Maya Peretz
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: