Skip to content

Conversation

@tembleking
Copy link
Member

This PR adds support for the "admission_control" stage in vulnerability policies.

This includes the addition of two new configurable fields within the configuration block for the "admission_control" stage:

  • failure_action: Defines the action to take when a policy fails (e.g., "reject", "warn").
  • unknown_image_action: Defines the action to take when an image is unknown (e.g., "reject", "rejectAndScan", "warn").

@tembleking
Copy link
Member Author

Blocked until the API is able to ingest the admission_control stage name.

Error: request body has an error: doesn't match schema #/components/schemas/CreatePolicyRequest: Error at "/stages/2/name": value is not one of the allowed values ["runtime","pipeline","registry"]

airadier
airadier previously approved these changes Nov 5, 2025
Copy link

@Jujuyeh Jujuyeh left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM

@tembleking tembleking enabled auto-merge (squash) November 21, 2025 14:02
@tembleking tembleking merged commit 9c6e110 into master Nov 21, 2025
22 checks passed
@tembleking tembleking deleted the feat-add-admission-control-vuln-policy branch November 21, 2025 15:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants