-
Feature Request
-
Resolution: Done
-
Major
-
None
-
None
-
None
-
False
-
None
-
False
-
-
-
Edward from SAP BSO has provided the following request:
*=======BEGINNING - CUSTOMER INPUT=======*
We are using StackRox and should notify systems/cluster owners. In case of policy violation system/cluster owner should get an email with the violation description.
For example, we want to configure system/cluster owner notification in case of a “30-Day Image Age” policy violation detected on cluster "sap-dev". We should create an email plugin configuration and add as recipient system/cluster owner email, then create a policy with scope restriction on cluster "sap-dev" and attach notification created previously.
We have a bunch of clusters, system/cluster owners, and System policies. This activity is complicated and hard to maintain.
Suppose that every cluster has its system/cluster owner and all policy should have the notification. In this case amount of policies is a multiplication amount of system/cluster owners by amount of policies.
This situation can be suitable for a little amount of cluster, system/cluster owners, and policies. For our purposes, it does not suit.
I see the following solution:
1. Add to cluster description "cluster owner" field. The field can take one or more emails.
2. Add to policy description "notify cluster owner" checkbox or switch label.
If it was implemented, the workflow will have the following view, in case of detecting policy violation, the StackRox engine sends on email from "cluster owner" filed email with policy violation description.
The notification template and current notification options can be left without changes.”
Basically a way to assign a responsible colleague or DL to a cluster.
*=======END - CUSTOMER INPUT=======*