Skip to content

incorporate Kubernetes policy scanner into starboard #1133

@chen-keinan

Description

@chen-keinan

The motivation for this task is to eat aqua open source dog food, meaning have a unified kubernetes policy scanner lib used in the builtin config audit scanner (same as used in other projects).

In this task, starboard will incorporate the new Kubernetes policy scanner introduced by Defsec and it will replace the embedded policy lib used to evaluate configAudit rego scripts.

here is the reference to new scanner : https://github.com/aquasecurity/defsec/tree/master/pkg/scanners/kubernetes

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions