Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Falco Policy Report CRD adapter #51

Closed
JimBugwadia opened this issue Apr 20, 2021 · 14 comments
Closed

Falco Policy Report CRD adapter #51

JimBugwadia opened this issue Apr 20, 2021 · 14 comments
Assignees
Labels
wg/policy Categorizes an issue or PR as relevant to WG Policy.

Comments

@JimBugwadia
Copy link
Member

JimBugwadia commented Apr 20, 2021

Develop an adapter to convert Falco results and periodically generate or update a Policy Report custom resource based on the WG Policy CRD.

The Falco Sidekick project may be the right integration point.

@sunstonesecure-robert
Copy link

I would lean towards a PR to Falco to produce policy reports rather than an adapter - if we have native CRD generation in the tools themselves I think it benefits all "generators" and consumers.

but ... I fully recognize the practical ramp-up issues involved with that. ie having to understand falco code base vs just read in json and call custom resource api. maybe this project is a bridge to that longer term goal.

@JimBugwadia
Copy link
Member Author

@sunstonesecure-robert - yes! The intent is to start with adapters and then revisit native support across tools.

@JimBugwadia JimBugwadia self-assigned this Apr 24, 2021
@yindia
Copy link
Contributor

yindia commented Apr 30, 2021

@JimBugwadia I am familiar with falcosidekick codebase and WG policy CRD. Can this assign to me?

@JimBugwadia
Copy link
Member Author

@evalsocket @sunstonesecure-robert - this work has been submitted as a LXF mentorship project and we will be selecting a mentee to work on it based on the timelines at: https://github.com/cncf/mentoring/tree/master/lfx-mentorship/2021/02-Summer.

@rficcaglia
Copy link
Contributor

rficcaglia commented Apr 30, 2021 via email

@rficcaglia rficcaglia added the wg/policy Categorizes an issue or PR as relevant to WG Policy. label May 9, 2021
@Aniket118
Copy link

Hello, @JimBugwadia I'm new to the CNCF community I'm interested in working on this project project idea. Can you please guide me on how to get started with it?

@JimBugwadia
Copy link
Member Author

JimBugwadia commented May 12, 2021

Hi @Aniket118 - thanks for your interest in contributing!

This project has been submitted as a LXF mentorship project and we will be selecting a mentee to work on it based on the timelines at: https://github.com/cncf/mentoring/tree/master/lfx-mentorship/2021/02-Summer.

Please feel free to apply at this link https://mentorship.lfx.linuxfoundation.org/project/cab6e242-33d5-427d-a408-9adff1a95271, and ask if you have any questions. Thanks!

@Aniket118
Copy link

Can you tell maximum of how many members can work on this project?

@JimBugwadia
Copy link
Member Author

@Aniket118 - the project is for one mentee.

@Aniket118
Copy link

ok thanks

@anushkamittal20
Copy link
Contributor

/assign @anushkamittal20

@JimBugwadia JimBugwadia removed their assignment Jun 1, 2021
@k8s-triage-robot
Copy link

The Kubernetes project currently lacks enough contributors to adequately respond to all issues and PRs.

This bot triages issues and PRs according to the following rules:

  • After 90d of inactivity, lifecycle/stale is applied
  • After 30d of inactivity since lifecycle/stale was applied, lifecycle/rotten is applied
  • After 30d of inactivity since lifecycle/rotten was applied, the issue is closed

You can:

  • Mark this issue or PR as fresh with /remove-lifecycle stale
  • Mark this issue or PR as rotten with /lifecycle rotten
  • Close this issue or PR with /close
  • Offer to help out with Issue Triage

Please send feedback to sig-contributor-experience at kubernetes/community.

/lifecycle stale

@k8s-ci-robot k8s-ci-robot added the lifecycle/stale Denotes an issue or PR has remained open with no activity and has become stale. label Aug 30, 2021
@JimBugwadia JimBugwadia removed the lifecycle/stale Denotes an issue or PR has remained open with no activity and has become stale. label Aug 31, 2021
@JimBugwadia
Copy link
Member Author

@anushkamittal20 - is this ready to be closed?

@anushkamittal20
Copy link
Contributor

Hey @JimBugwadia, Thomas has to review and allow merge for this PR. I will reach out to him regarding this. I have done the work and changes he requested earlier.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
wg/policy Categorizes an issue or PR as relevant to WG Policy.
Projects
None yet
Development

No branches or pull requests

8 participants