-
Feature Request
-
Resolution: Unresolved
-
Normal
-
None
-
None
-
None
-
None
-
Product / Portfolio Work
-
None
-
False
-
-
None
-
None
-
None
-
-
None
-
None
-
None
-
None
-
None
1. Proposed Title of this Feature Request
Enhanced Policy Exception Management in Red Hat Advanced Cluster Management (ACM)
https://release-1-11-0.kyverno.io/docs/writing-policies/exceptions/
2. Nature and Description of the Request
Red Hat ACM currently enforces compliance policies but lacks a structured mechanism for managing policy exceptions. This feature request proposes the addition of a formal exception handling framework that allows users to:
Request exceptions to specific policies.
Define scope (cluster, namespace).
Track approval workflows.
Maintain audit logs for all exception activity.
Integrate exception status in policy compliance dashboards.
3. Why Does the Customer Need This? (Business Requirements)
Operational Flexibility: Some environments or applications require temporary deviations from security or configuration policies.
Audit & Compliance: Customers in regulated industries need traceable exception handling for internal audits and external compliance.
Scalability: Manually tracking exceptions is error-prone and doesn’t scale across clusters and teams.
Platform Governance: Exception workflows help platform teams maintain control without blocking business velocity.
4. List Any Affected Packages or Components
RH ACM Governance
- is cloned by
-
ACM-24871 Integrate Kyverno's PolicyException into RHACM Policy Management
-
- Backlog
-