Uploaded image for project: 'OpenShift Request For Enhancement'
  1. OpenShift Request For Enhancement
  2. RFE-7866

Integrate Kyverno's PolicyException into RHACM Policy Management

XMLWordPrintable

    • Icon: Feature Request Feature Request
    • Resolution: Unresolved
    • Icon: Normal Normal
    • None
    • None
    • RHACM-governance
    • None
    • None
    • Product / Portfolio Work
    • None
    • False
    • Hide

      None

      Show
      None
    • None
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      1. Proposed Title of this Feature Request
      Enhanced Policy Exception Management in Red Hat Advanced Cluster Management (ACM)

      https://release-1-11-0.kyverno.io/docs/writing-policies/exceptions/ 

      2. Nature and Description of the Request
      Red Hat ACM currently enforces compliance policies but lacks a structured mechanism for managing policy exceptions. This feature request proposes the addition of a formal exception handling framework that allows users to:

      Request exceptions to specific policies.

      Define scope (cluster, namespace).

      Track approval workflows.

      Maintain audit logs for all exception activity.

      Integrate exception status in policy compliance dashboards.

      3. Why Does the Customer Need This? (Business Requirements)
      Operational Flexibility: Some environments or applications require temporary deviations from security or configuration policies.

      Audit & Compliance: Customers in regulated industries need traceable exception handling for internal audits and external compliance.

      Scalability: Manually tracking exceptions is error-prone and doesn’t scale across clusters and teams.

      Platform Governance: Exception workflows help platform teams maintain control without blocking business velocity.

      4. List Any Affected Packages or Components

      RH ACM Governance

              showeimer Sho Weimer
              mp.singh Mahendra Singh
              None
              Votes:
              0 Vote for this issue
              Watchers:
              2 Start watching this issue

                Created:
                Updated:
                None
                None