-
Feature Request
-
Resolution: Done
-
Major
-
None
-
None
CUSTOMER PROBLEM
ACS is installed and upgraded using an operator. The ACS operator is deployed in the namespace "rhacs-operator". The OpenShift CIS compliance scan fails against all namespaces not prefixed with "openshift-" and without NetworkPolicies.
Since the ACS operator namespace "rhacs-operator"
- is not prefixed with "openshift" and
- does not have any a network policy configured; it fails the compliance check.
The failed compliancecheckresult is named "ocp4-cis-configure-network-policies-namespaces".
USERS
Security teams
ACCEPTANCE CRITERIA
- Out of the box ACS operator namespace "rhacs-operator" must have a network policy configured.
- OpenShift CIS compliance scan, of the ACS operator namespace "rhacs-operator", should not fail with compliance check named "ocp4-cis-configure-network-policies-namespaces"