Skip to content

Conversation

@qiujian16
Copy link
Member

Signed-off-by: Jian Qiu jqiu@redhat.com

Signed-off-by: Jian Qiu <jqiu@redhat.com>
@openshift-ci
Copy link

openshift-ci bot commented Aug 11, 2021

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: qiujian16

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment


### GRC: Governance, Risk and Compliance across Kubernetes clusters

* Use prebuilt security and configuration controllers to enforce policy on Kubernetes configuration, identity and access management (IAM), Center for Internet Security (CIS), and certificate management across your clusters.
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@dhaiducek could you please take a look at this change around GRC. I am not sure its accurate to mention things like IAM here. Thanks.

Copy link
Member

@dhaiducek dhaiducek Aug 12, 2021

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Correct. For upstream this should probably only say "to enforce policies on Kubernetes configuration across your clusters."
The IAM and Certificate controllers were not brought over, and CIS is delivered through the compliance operator (not out of the box).

@mikeshng mikeshng requested a review from dhaiducek August 11, 2021 13:11
@qiujian16 qiujian16 mentioned this pull request Aug 12, 2021
* https://github.com/open-cluster-management-io/addon-framework

### Delivery, upgrade, and configuration of applications on Kubernetes clusters
### Application: Delivery, upgrade, and configuration of applications on Kubernetes clusters
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I suggest we use Application Lifecycle similar to Cluster Lifecycle

* https://github.com/open-cluster-management-io/multicloud-operators-subscription
* https://github.com/open-cluster-management-io/multicloud-operators-channel

### GRC: Governance, Risk and Compliance across Kubernetes clusters
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Aligning with downstream, this should be "Governance:" instead of "GRC:"


### GRC: Governance, Risk and Compliance across Kubernetes clusters

* Use prebuilt security and configuration controllers to enforce policy on Kubernetes configuration, identity and access management (IAM), Center for Internet Security (CIS), and certificate management across your clusters.
Copy link
Member

@dhaiducek dhaiducek Aug 12, 2021

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Correct. For upstream this should probably only say "to enforce policies on Kubernetes configuration across your clusters."
The IAM and Certificate controllers were not brought over, and CIS is delivered through the compliance operator (not out of the box).

@openshift-ci
Copy link

openshift-ci bot commented Oct 17, 2021

@qiujian16: PR needs rebase.

Instructions for interacting with me using PR comments are available here. If you have questions or suggestions related to my behavior, please file an issue against the kubernetes/test-infra repository.

@qiujian16 qiujian16 closed this Oct 18, 2021
@qiujian16 qiujian16 deleted the subproject branch October 18, 2021 03:23
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants