-
Notifications
You must be signed in to change notification settings - Fork 718
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
[release-v2.9] Forward port rancher cis benchmark (#4268)
- Loading branch information
1 parent
1b6ca72
commit 3d6e358
Showing
489 changed files
with
8,204 additions
and
4 deletions.
There are no files selected for viewing
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
Binary file not shown.
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,10 @@ | ||
annotations: | ||
catalog.cattle.io/certified: rancher | ||
catalog.cattle.io/hidden: "true" | ||
catalog.cattle.io/namespace: cis-operator-system | ||
catalog.cattle.io/release-name: rancher-cis-benchmark-crd | ||
apiVersion: v1 | ||
description: Installs the CRDs for rancher-cis-benchmark. | ||
name: rancher-cis-benchmark-crd | ||
type: application | ||
version: 4.3.0 |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,2 @@ | ||
# rancher-cis-benchmark-crd | ||
A Rancher chart that installs the CRDs used by rancher-cis-benchmark. |
148 changes: 148 additions & 0 deletions
148
charts/rancher-cis-benchmark-crd/4.3.0/templates/clusterscan.yaml
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,148 @@ | ||
apiVersion: apiextensions.k8s.io/v1 | ||
kind: CustomResourceDefinition | ||
metadata: | ||
name: clusterscans.cis.cattle.io | ||
spec: | ||
group: cis.cattle.io | ||
names: | ||
kind: ClusterScan | ||
plural: clusterscans | ||
scope: Cluster | ||
versions: | ||
- name: v1 | ||
served: true | ||
storage: true | ||
additionalPrinterColumns: | ||
- jsonPath: .status.lastRunScanProfileName | ||
name: ClusterScanProfile | ||
type: string | ||
- jsonPath: .status.summary.total | ||
name: Total | ||
type: string | ||
- jsonPath: .status.summary.pass | ||
name: Pass | ||
type: string | ||
- jsonPath: .status.summary.fail | ||
name: Fail | ||
type: string | ||
- jsonPath: .status.summary.skip | ||
name: Skip | ||
type: string | ||
- jsonPath: .status.summary.warn | ||
name: Warn | ||
type: string | ||
- jsonPath: .status.summary.notApplicable | ||
name: Not Applicable | ||
type: string | ||
- jsonPath: .status.lastRunTimestamp | ||
name: LastRunTimestamp | ||
type: string | ||
- jsonPath: .spec.scheduledScanConfig.cronSchedule | ||
name: CronSchedule | ||
type: string | ||
subresources: | ||
status: {} | ||
schema: | ||
openAPIV3Schema: | ||
properties: | ||
spec: | ||
properties: | ||
scanProfileName: | ||
nullable: true | ||
type: string | ||
scheduledScanConfig: | ||
nullable: true | ||
properties: | ||
cronSchedule: | ||
nullable: true | ||
type: string | ||
retentionCount: | ||
type: integer | ||
scanAlertRule: | ||
nullable: true | ||
properties: | ||
alertOnComplete: | ||
type: boolean | ||
alertOnFailure: | ||
type: boolean | ||
type: object | ||
type: object | ||
scoreWarning: | ||
enum: | ||
- pass | ||
- fail | ||
nullable: true | ||
type: string | ||
type: object | ||
status: | ||
properties: | ||
NextScanAt: | ||
nullable: true | ||
type: string | ||
ScanAlertingRuleName: | ||
nullable: true | ||
type: string | ||
conditions: | ||
items: | ||
properties: | ||
lastTransitionTime: | ||
nullable: true | ||
type: string | ||
lastUpdateTime: | ||
nullable: true | ||
type: string | ||
message: | ||
nullable: true | ||
type: string | ||
reason: | ||
nullable: true | ||
type: string | ||
status: | ||
nullable: true | ||
type: string | ||
type: | ||
nullable: true | ||
type: string | ||
type: object | ||
nullable: true | ||
type: array | ||
display: | ||
nullable: true | ||
properties: | ||
error: | ||
type: boolean | ||
message: | ||
nullable: true | ||
type: string | ||
state: | ||
nullable: true | ||
type: string | ||
transitioning: | ||
type: boolean | ||
type: object | ||
lastRunScanProfileName: | ||
nullable: true | ||
type: string | ||
lastRunTimestamp: | ||
nullable: true | ||
type: string | ||
observedGeneration: | ||
type: integer | ||
summary: | ||
nullable: true | ||
properties: | ||
fail: | ||
type: integer | ||
notApplicable: | ||
type: integer | ||
pass: | ||
type: integer | ||
skip: | ||
type: integer | ||
total: | ||
type: integer | ||
warn: | ||
type: integer | ||
type: object | ||
type: object | ||
type: object |
54 changes: 54 additions & 0 deletions
54
charts/rancher-cis-benchmark-crd/4.3.0/templates/clusterscanbenchmark.yaml
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,54 @@ | ||
apiVersion: apiextensions.k8s.io/v1 | ||
kind: CustomResourceDefinition | ||
metadata: | ||
name: clusterscanbenchmarks.cis.cattle.io | ||
spec: | ||
group: cis.cattle.io | ||
names: | ||
kind: ClusterScanBenchmark | ||
plural: clusterscanbenchmarks | ||
scope: Cluster | ||
versions: | ||
- name: v1 | ||
served: true | ||
storage: true | ||
additionalPrinterColumns: | ||
- jsonPath: .spec.clusterProvider | ||
name: ClusterProvider | ||
type: string | ||
- jsonPath: .spec.minKubernetesVersion | ||
name: MinKubernetesVersion | ||
type: string | ||
- jsonPath: .spec.maxKubernetesVersion | ||
name: MaxKubernetesVersion | ||
type: string | ||
- jsonPath: .spec.customBenchmarkConfigMapName | ||
name: customBenchmarkConfigMapName | ||
type: string | ||
- jsonPath: .spec.customBenchmarkConfigMapNamespace | ||
name: customBenchmarkConfigMapNamespace | ||
type: string | ||
subresources: | ||
status: {} | ||
schema: | ||
openAPIV3Schema: | ||
properties: | ||
spec: | ||
properties: | ||
clusterProvider: | ||
nullable: true | ||
type: string | ||
customBenchmarkConfigMapName: | ||
nullable: true | ||
type: string | ||
customBenchmarkConfigMapNamespace: | ||
nullable: true | ||
type: string | ||
maxKubernetesVersion: | ||
nullable: true | ||
type: string | ||
minKubernetesVersion: | ||
nullable: true | ||
type: string | ||
type: object | ||
type: object |
36 changes: 36 additions & 0 deletions
36
charts/rancher-cis-benchmark-crd/4.3.0/templates/clusterscanprofile.yaml
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,36 @@ | ||
apiVersion: apiextensions.k8s.io/v1 | ||
kind: CustomResourceDefinition | ||
metadata: | ||
name: clusterscanprofiles.cis.cattle.io | ||
spec: | ||
group: cis.cattle.io | ||
names: | ||
kind: ClusterScanProfile | ||
plural: clusterscanprofiles | ||
scope: Cluster | ||
versions: | ||
- name: v1 | ||
served: true | ||
storage: true | ||
subresources: | ||
status: {} | ||
schema: | ||
openAPIV3Schema: | ||
properties: | ||
spec: | ||
properties: | ||
benchmarkVersion: | ||
nullable: true | ||
type: string | ||
skipTests: | ||
items: | ||
nullable: true | ||
type: string | ||
nullable: true | ||
type: array | ||
type: object | ||
type: object | ||
additionalPrinterColumns: | ||
- jsonPath: .spec.benchmarkVersion | ||
name: BenchmarkVersion | ||
type: string |
39 changes: 39 additions & 0 deletions
39
charts/rancher-cis-benchmark-crd/4.3.0/templates/clusterscanreport.yaml
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,39 @@ | ||
apiVersion: apiextensions.k8s.io/v1 | ||
kind: CustomResourceDefinition | ||
metadata: | ||
name: clusterscanreports.cis.cattle.io | ||
spec: | ||
group: cis.cattle.io | ||
names: | ||
kind: ClusterScanReport | ||
plural: clusterscanreports | ||
scope: Cluster | ||
versions: | ||
- name: v1 | ||
served: true | ||
storage: true | ||
additionalPrinterColumns: | ||
- jsonPath: .spec.lastRunTimestamp | ||
name: LastRunTimestamp | ||
type: string | ||
- jsonPath: .spec.benchmarkVersion | ||
name: BenchmarkVersion | ||
type: string | ||
subresources: | ||
status: {} | ||
schema: | ||
openAPIV3Schema: | ||
properties: | ||
spec: | ||
properties: | ||
benchmarkVersion: | ||
nullable: true | ||
type: string | ||
lastRunTimestamp: | ||
nullable: true | ||
type: string | ||
reportJSON: | ||
nullable: true | ||
type: string | ||
type: object | ||
type: object |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,10 @@ | ||
annotations: | ||
catalog.cattle.io/certified: rancher | ||
catalog.cattle.io/hidden: "true" | ||
catalog.cattle.io/namespace: cis-operator-system | ||
catalog.cattle.io/release-name: rancher-cis-benchmark-crd | ||
apiVersion: v1 | ||
description: Installs the CRDs for rancher-cis-benchmark. | ||
name: rancher-cis-benchmark-crd | ||
type: application | ||
version: 4.4.0 |
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -0,0 +1,2 @@ | ||
# rancher-cis-benchmark-crd | ||
A Rancher chart that installs the CRDs used by rancher-cis-benchmark. |
Oops, something went wrong.