Skip to content

Commit 12c3cd6

Browse files
committed
Add a profile for CIS OCP VM Extension v1.0.0
We expect this profile to exclusively leverage the CEL rules.
1 parent 1c03437 commit 12c3cd6

1 file changed

Lines changed: 30 additions & 0 deletions

File tree

Lines changed: 30 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,30 @@
1+
---
2+
documentation_complete: true
3+
4+
metadata:
5+
version: 1.0.0
6+
SMEs:
7+
- rhmdnd
8+
- Vincent056
9+
- yuumasato
10+
11+
title: 'CIS Red Hat Openshift Virtual Machine Extension Benchmark'
12+
13+
description: |-
14+
This profile defines a baseline that aligns to the Center for Internet Security®
15+
Red Hat OpenShift Virtual Machine Extention Benchmark™, V1.0.0.
16+
17+
This profile includes Center for Internet Security®
18+
Red Hat OpenShift Virtual Machine Extension Benchmarks™ content.
19+
20+
Note that this part of the profile is meant to run on the Platform that
21+
Red Hat OpenShift Container Platform runs on top of.
22+
23+
scannerType: CEL
24+
25+
selections:
26+
- kubevirt-nonroot-feature-gate-is-enabled
27+
- kubevirt-no-permitted-host-devices
28+
- kubevirt-persistent-reservation-disabled
29+
- kubevirt-no-vms-overcommitting-guest-memory
30+
- kubevirt-enforce-trusted-tls-registries

0 commit comments

Comments
 (0)