Skip to content

Agentless scanning support for AKS on ACI and GKE Autopilot - #39591

Merged
BraisCabo-DD merged 4 commits into
masterfrom
brais.cabofelpete/aks-gke-kubernetes-scanning-update
Sep 2, 2026
Merged

Agentless scanning support for AKS on ACI and GKE Autopilot#39591
BraisCabo-DD merged 4 commits into
masterfrom
brais.cabofelpete/aks-gke-kubernetes-scanning-update

Conversation

@BraisCabo-DD

@BraisCabo-DD BraisCabo-DD commented Aug 31, 2026

Copy link
Copy Markdown
Contributor

What does this PR do? What is the motivation?

Agentless Scanning now supports Kubernetes container image scanning on the auto-managed node types that were previously excluded: AKS on Azure Container Instances (ACI) and GKE Autopilot, in addition to the already-supported AKS virtual machines/VMSS and GKE Standard. Both auto-managed types require the Datadog Cluster Agent, the same prerequisite already documented for EKS on Fargate. GKE image streaming is also now supported, so that caveat is removed.

Merge readiness

  • Ready for merge

For Datadog employees:

  • ⚠️ Your branch name MUST follow the <name>/<description> convention and include the forward slash (/). If you've already created your PR with an incorrect branch name, please rename your branch and open a fresh PR.
  • 🤖 New: Comment with /review to run an automated check that catches common issues before a Documentation team member reviews your PR.

AI assistance

Used Claude Code to research the underlying change (via Slack, the implementation PR, and confirmation from the feature team) and update this doc accordingly.

Additional notes

@github-actions

Copy link
Copy Markdown
Contributor

@BraisCabo-DD

Copy link
Copy Markdown
Contributor Author

/review

@github-actions github-actions Bot left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🤖 Automated review by Claude. AI-generated; verify before acting.

Diff is a targeted update to the Kubernetes row of the compatibility table. No blockers or style violations spotted; the Cluster Agent requirement wording is consistent with the existing EKS on Fargate note.

Reviewed 2485c144b2ac26741f9b79a0af18d50c11de7ba6workflow run

@janine-c janine-c self-assigned this Aug 31, 2026
@janine-c janine-c added the editorial review Waiting on a more in-depth review label Aug 31, 2026
The support boundaries per platform are unchanged; only the scanning depth for already-supported node types (image-level, not just disk-level) improved.
…caveat

Both auto-managed node types now require the Datadog Cluster Agent, mirroring the existing EKS on Fargate requirement. Image streaming on GKE is now supported.
@BraisCabo-DD
BraisCabo-DD marked this pull request as ready for review September 2, 2026 13:19
@BraisCabo-DD
BraisCabo-DD requested a review from a team as a code owner September 2, 2026 13:19
@BraisCabo-DD
BraisCabo-DD merged commit 8a70f03 into master Sep 2, 2026
26 checks passed
@BraisCabo-DD
BraisCabo-DD deleted the brais.cabofelpete/aks-gke-kubernetes-scanning-update branch September 2, 2026 13:19
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

editorial review Waiting on a more in-depth review

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants