Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

A white list must be implemented to exclude some pods (robot, sniro, aaf)

Rooted pods security follow-up

Jira
serverONAP JIRA
jqlQuerylabels in (integration) and labels in (security) AND labels in (root)
serverId425b2b0a-557c-3c0c-b515-579789cceedb

results can be found in gating and daily master in root_pods.log

For Frankfurt the focus must be done on our dockers

Upstream docker can be excluded.

Please note that the test check that the default user is not root. In some case the user exists but the main process is not launched as root (REQ-215 is fine even if it is usually simplifier to delete the root user..)