Uploaded image for project: 'OpenShift Request For Enhancement'
  1. OpenShift Request For Enhancement
  2. RFE-6075

RHACS: Monitoring shell activities without locking the container

XMLWordPrintable

    • False
    • None
    • False

      1. Proposed title of this feature request
      Monitoring shell activities without locking the container

      2. What is the nature and description of the request?
      CU would like to track user activities on containers. Unauthorized Process Execution provides detailed information regarding but it only alerts when locked the container via Risk menu.

      3. Why does the customer need this? (List the business requirements here)
      This is really a critical issue for CU and it will be really valuable.
      Lock option is really beneficial when it comes to reducing attack surface but CU have a large environment with many critical core banking applications. They need to analyze all the baselines really carefully before deciding to apply lock mode.

        1. image-2023-03-15-11-16-12-974.png
          440 kB
          Maria Simon Marcos
        2. old_alert_only_has_baseline_processes.PNG
          38 kB
          Ashish Prajapati

              rh-ee-masimonm Maria Simon Marcos
              rhn-support-aprajapa Ashish Prajapati
              Anjali Telang, Boaz Michaely, Doron Caspin, JP Jung, Maria Simon Marcos, Shubha Badve
              Votes:
              0 Vote for this issue
              Watchers:
              3 Start watching this issue

                Created:
                Updated:
                Resolved: