-
Bug
-
Resolution: Obsolete
-
Normal
-
None
-
4.13
-
Quality / Stability / Reliability
-
False
-
-
None
-
Moderate
-
No
-
None
-
None
-
None
-
None
-
Release Note Not Required
-
N/A
-
None
-
None
-
None
-
None
Description of problem:
The section of [Security and Compliance in OpenShift documentation|https://docs.openshift.com/container-platform/4.13/security/index.html] is missing information about ProdSec to help customers self-serve.
There are a lot of questions from OpenShift customers that are around CVEs. We have multiple KCS around the subject, including dedicated ProdSec page around it, however it is not linked in the official OpenShift documentation.
After discussing this with the support team (sbr-shift-security), we decided it would be very useful to link this information in the docs.
I suggest - add a new section there and list some of the available KCS/pages from this list / contact the ProdSec contributors for their recommendations.
https://access.redhat.com/solutions/7032574
https://access.redhat.com/articles/red_hat_vulnerability_tutorial
https://access.redhat.com/labs/cvechecker/