Skip to content

Sysdig - Remediate Workload alpine-deployment#25

Open
sysdig-app-aws-staging[bot] wants to merge 1 commit intomainfrom
sysdig-remediate-e2e-alpine-deployment-1704788246
Open

Sysdig - Remediate Workload alpine-deployment#25
sysdig-app-aws-staging[bot] wants to merge 1 commit intomainfrom
sysdig-remediate-e2e-alpine-deployment-1704788246

Conversation

@sysdig-app-aws-staging
Copy link
Copy Markdown

Sysdig automated remediation for alpine-deployment

Sysdig opened the pull request on behalf of judith.sherbin+manual@sysdig.com

Sysdig analysis found violations for resource alpine-deployment

Remediated Control:

Container with NET_RAW capability

Assigns NET_RAW capability that allows binding to any address for transparent proxying any host address

  • Severity: 🔴 High
  • Change Impact: The container will lose its NET_RAW capability which allows binding to any network interface

Failed Requirement:

  • 5.2.7 Minimize the admission of containers with the NET_RAW capability [CIS Kubernetes V1.18 Benchmark]

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants