forked from aquasecurity/deployments
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
trivy-operator integration with kube-enforcer
With this change, we are replacing starboard operator with trivy operator 1. We have updated kube_enforcer,kube_enforcer_advanced manifest files with Trivy Operator Resources 2. Moved starboard manifest files to kube_enforcer_starbaord and kube_enforcer_advanced_starboard 3. Updated relevant gen_ke_certs.sh and readme files Reference PR: aquasecurity#566 4. Upgraded trivy-operator version to latest (0.20.1)as the existing version has critical vulnerabilities 5. Upgraded kube-bench version with latest (v0.7.3) Reference PR: aquasecurity#567 6. Added keys for Admission Control when the GW is disconnected, Enable workload discovery, Register discovered pod images, and Add discovered registries. 7. Removed the AQUA_WATCH_CONFIG_AUDIT_REPORT key as it is no longer supported. Reference PR: aquasecurity#565
- Loading branch information
1 parent
f287ae9
commit 1827df5
Showing
24 changed files
with
3,418 additions
and
3,390 deletions.
There are no files selected for viewing
1,092 changes: 918 additions & 174 deletions
1,092
...e_enforcer/kubernetes_and_openshift/manifests/kube_enforcer/001_kube_enforcer_config.yaml
Large diffs are not rendered by default.
Oops, something went wrong.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Oops, something went wrong.