-
Bug
-
Resolution: Won't Do
-
Normal
-
None
-
4.11.0
-
None
-
Quality / Stability / Reliability
-
False
-
-
None
-
Moderate
-
No
-
None
-
None
-
None
-
None
-
None
-
None
-
None
-
None
-
None
-
None
-
None
Description of problem:
Re-opening bug BZ-2077916
ocp4-cis-scc-limit-container-allowed-capabilities should be MANUAL rule.
I verified it is set as Automatic in Compliance Operator 0.1.61:
# oc get csv NAME DISPLAY VERSION REPLACES PHASE compliance-operator.v0.1.61 Compliance Operator 0.1.61 Succeeded # oc get -n openshift-compliance compliancecheckresults | grep ocp4-cis-scc-limit-container-allowed-capabilities ocp4-cis-scc-limit-container-allowed-capabilities PASS medium
Version-Release number of selected component (if applicable):
Compliance Operator 0.1.61
How reproducible:
Always
Steps to Reproduce:
1. Install Compliance Operator 0.1.61
2. Execute cis
Actual results:
# oc get -n openshift-compliance compliancecheckresults | grep ocp4-cis-scc-limit-container-allowed-capabilities ocp4-cis-scc-limit-container-allowed-capabilities PASS medium
Expected results:
ocp4-cis-scc-limit-container-allowed-capabilities should be MANUAL