Commit Graph

  • fa478ce238 fix: correct TLSCipherSuites to tlsCipherSuites (#1703) Omar kamoun 2024-10-16 06:50:10 +01:00
  • 1d8f80e846 build(deps): bump github.com/golang/glog from 1.2.0 to 1.2.2 (#1702) dependabot[bot] 2024-10-15 11:14:14 +06:00
  • b99f757546 Deployed a15e8ac to v0.9.0 with MkDocs 1.6.1 and mike 2.1.3 gh-pages aqua-bot 2024-10-11 13:33:36 +00:00
  • a15e8acaa3 Add GKE 1.6 CIS benchmark for GCP environment (#1672) v0.9.0 Abubakr-Sadik Nii Nai Davis 2024-10-11 04:49:35 +00:00
  • e47725299e build(deps): bump gorm.io/driver/postgres from 1.5.6 to 1.5.9 (#1698) dependabot[bot] 2024-10-10 10:37:41 +06:00
  • e8562f2944 Extend default kubelet configlist to fit AWS EKS (#1637) Matthias Muth 2024-10-04 10:08:03 +02:00
  • 3a0ccc440c fix: rh-1.0 check 4.1.3 typo (#1652) Arano-kai 2024-10-04 10:42:56 +03:00
  • c683e93968 build(deps): bump github.com/aws/aws-sdk-go-v2/service/securityhub (#1696) dependabot[bot] 2024-10-04 12:21:07 +06:00
  • e75cd6bbc8 Updated KUBECTL_VERSION to 1.31.0 for fixing vulnerabilities (#1690) jdesouza 2024-10-03 13:43:01 -03:00
  • d8f041a826 build(deps): bump alpine from 3.20.0 to 3.20.3 (#1676) dependabot[bot] 2024-10-03 09:20:12 +06:00
  • 7ea1d59bb1 update audit script for cis-1.9 kubernetes policies id 5.1.6 (#1655) Winnerson Kharsunai 2024-10-01 11:18:02 +05:30
  • 89842dcaaa update dockerfile to add package findutils (#1657) Winnerson Kharsunai 2024-10-01 11:02:23 +05:30
  • 674d8e8bb7 Update command to build docker to run in EKS cluster (#1648) za 2024-09-30 13:13:10 +07:00
  • 4b4c1ce709 Modify 1.2.3 Ensure that the DenyServiceExternalIPs is set in CIS-1.7/1.8 (#1607) Andy Pitcher 2024-09-30 00:30:59 -04:00
  • b85ec78a84 Fix CIS-1.9 policies 5.1.1/5.1.5 typos (#1658) Andy Pitcher 2024-09-29 23:54:45 -04:00
  • f6877e3c17 Fix issue 1595: failed to output to ASFF (#1691) Wolfgang Reichert 2024-09-28 09:36:44 +02:00
  • 2751f87034 Fix audit and remediation for CIS-1.9 master 1.1.13/1.1.14 (#1649) Andy Pitcher 2024-09-26 00:45:48 -04:00
  • a9422a6623 Overhaul of K3s scans (#1659) Derek Nola 2024-09-25 00:12:02 -07:00
  • f8b6f2fc19 chore: fixed vulns - bump Go version (#1687) mjshastha 2024-09-24 11:42:40 +05:30
  • c533d68bad FIXING RKE-2-CIS-1.24 Checks (#1688) Saurabh Misra 2024-09-24 11:26:58 +05:30
  • 5a3fd1d896 build(deps): bump golang from 1.22.2 to 1.22.4 (#1629) dependabot[bot] 2024-07-04 08:46:34 +03:00
  • 366e79ddda release: prepare v0.8.0 (#1639) v0.8.0 chenk 2024-07-02 10:35:09 +03:00
  • 871027447f build(deps): bump goreleaser/goreleaser-action from 5 to 6 (#1628) dependabot[bot] 2024-06-29 15:53:49 +03:00
  • 7027b6b2ec Add CIS kubernetes CIS-1.9 for k8s v1.27 - v1.29 (#1617) Andy Pitcher 2024-06-26 08:53:57 -04:00
  • d8fc37649a build(deps): bump alpine from 3.19.1 to 3.20.0 (#1621) dependabot[bot] 2024-05-31 17:28:56 +03:00
  • 0f8dfaf115 Statically link binaries and remove debug information (#1615) Paulo Gomes 2024-05-22 05:37:36 +00:00
  • ed51191d7c Replace custom k3s etcd script checks with vanilla grep checks (#1601) Derek Nola 2024-05-20 03:47:15 -07:00
  • 2a8615befd build(deps): bump golang from 1.22.1 to 1.22.2 (#1596) dependabot[bot] 2024-05-03 19:35:58 +03:00
  • ff9341a5d0 release: prepare-v0.7.3 (#1599) v0.7.3 chenk 2024-04-18 09:58:44 +03:00
  • 65c484e85a build(deps): bump k8s.io/client-go from 0.29.1 to 0.29.3 (#1587) dependabot[bot] 2024-04-18 09:54:55 +03:00
  • d2d3e72271 Currently, certain commands involve retrieving all node names or pods and then executing additional commands in a loop, resulting in a time complexity linearly proportional to the number of nodes. (#1597) mjshastha 2024-04-18 11:31:17 +05:30
  • 73e1377ce0 build(deps): bump github.com/jackc/pgx/v5 from 5.4.3 to 5.5.4 (#1586) dependabot[bot] 2024-04-06 08:59:45 +03:00
  • dc8f4d37f0 build(deps): bump github.com/aws/aws-sdk-go-v2 from 1.25.2 to 1.26.0 (#1589) dependabot[bot] 2024-03-30 12:41:07 +03:00
  • dc7441620f build(deps): bump golang from 1.22.0 to 1.22.1 (#1583) dependabot[bot] 2024-03-29 14:10:34 +03:00
  • 45afbd76c2 build(deps): bump github.com/aws/aws-sdk-go-v2/config (#1577) dependabot[bot] 2024-03-08 15:36:33 +02:00
  • abfa7d9613 release: prepare v0.7.2 (#1578) v0.7.2 chenk 2024-02-29 13:37:20 +02:00
  • 3db3f736f8 build(deps): bump golangci/golangci-lint-action from 3 to 4 (#1568) dependabot[bot] 2024-02-19 13:12:30 +02:00
  • 57132a69fd build(deps): bump gorm.io/driver/postgres from 1.5.4 to 1.5.6 (#1567) dependabot[bot] 2024-02-19 10:27:44 +02:00
  • f297da6603 build(deps): bump golang from 1.21.6 to 1.22.0 (#1569) dependabot[bot] 2024-02-19 09:51:35 +02:00
  • 66a215189e build(deps): bump codecov/codecov-action from 3 to 4 (#1561) dependabot[bot] 2024-02-19 09:31:45 +02:00
  • 72eee4b7a4 build(deps): bump alpine from 3.19.0 to 3.19.1 (#1557) dependabot[bot] 2024-02-19 09:15:28 +02:00
  • ee5e4aff51 update rke-cis-1.24 benchmarks: corrected errors and tests (#1570) Kiran Bodipi 2024-02-15 15:04:31 +05:30
  • 2374e7b07f Rancher checks correction (#1563) Kiran Bodipi 2024-02-12 18:59:36 +05:30
  • faeceb5dfa job.yaml: Adding /var/lib/cni mounts for proper CIS 1.1.9 and 1.1.0 checking (#1547) Andrey Polovov 2024-02-11 12:23:17 +03:00
  • 30217061ac build(deps): bump github.com/aws/aws-sdk-go-v2/config (#1554) dependabot[bot] 2024-02-03 09:35:10 +02:00
  • 445c1160cf release: prepare v0.7.1 (#1559) v0.7.1 chenk 2024-01-31 11:57:16 +02:00
  • 57fba224fa chore: update base image to ubi9 (#1556) Devendra Turkar 2024-01-31 13:21:08 +05:30
  • a93b19f0c0 build(deps): bump k8s.io/client-go from 0.29.0 to 0.29.1 (#1552) dependabot[bot] 2024-01-28 12:21:47 +02:00
  • b17aa709b3 build(deps): bump k8s.io/apimachinery from 0.29.0 to 0.29.1 (#1553) dependabot[bot] 2024-01-27 11:18:39 +02:00
  • faa1b4be3d build(deps): bump actions/cache from 3 to 4 (#1551) dependabot[bot] 2024-01-26 13:40:45 +02:00
  • 628999c9c5 build(deps): bump golang from 1.21.5 to 1.21.6 (#1549) dependabot[bot] 2024-01-26 13:12:14 +02:00
  • 13da372a87 Updating the rh-1.0 OCP checks (#1548) Kiran Bodipi 2024-01-23 12:26:40 +05:30
  • 38949874d1 build(deps): bump github.com/aws/aws-sdk-go-v2 from 1.18.0 to 1.24.1 (#1550) dependabot[bot] 2024-01-20 12:22:18 +02:00
  • 39c29fb07a build(deps): bump alpine from 3.18.3 to 3.19.0 (#1535) dependabot[bot] 2024-01-12 08:01:55 +02:00
  • cc6c091b41 build(deps): bump gorm.io/driver/postgres from 1.4.6 to 1.5.4 (#1514) dependabot[bot] 2024-01-11 11:02:00 +02:00
  • 7efba2b94d build(deps): bump k8s.io/client-go from 0.26.0 to 0.29.0 (#1540) dependabot[bot] 2024-01-11 10:34:21 +02:00
  • a4b46f50de chore: update go version to 1.21 (#1546) Devendra Turkar 2024-01-10 17:56:50 +05:30
  • 221ff4fd42 build(deps): bump actions/setup-go from 4 to 5 (#1537) dependabot[bot] 2024-01-06 11:12:57 +02:00
  • 8c47d59e99 build(deps): bump github.com/spf13/viper from 1.14.0 to 1.18.2 (#1541) dependabot[bot] 2024-01-05 07:59:17 +02:00
  • 151efc3494 build(deps): bump golang.org/x/crypto from 0.14.0 to 0.17.0 (#1542) dependabot[bot] 2023-12-29 20:57:02 +02:00
  • 58a49da713 release: prepare v0.7.0 (#1543) v0.7.0 chenk 2023-12-19 09:08:02 +02:00
  • 64c0492401 build(deps): bump docker/login-action from 2 to 3 (#1500) dependabot[bot] 2023-12-19 08:42:25 +02:00
  • 7a55d5d57c Issue: The initial command produces "root:root" as its output only when the file is present. However, if the file is missing, the command will still run successfully, though the desired output of "root:root" won't be obtained. (#1538) mjshastha 2023-12-18 12:40:07 +05:30
  • f353bc4cba build(deps): bump golang from 1.21.3 to 1.21.5 (#1534) dependabot[bot] 2023-12-13 09:28:12 +02:00
  • 1393449298 build(deps): bump docker/setup-buildx-action from 2 to 3 (#1497) dependabot[bot] 2023-12-10 14:07:09 +02:00
  • 875fbc7f20 build(deps): bump github.com/spf13/cobra from 1.6.1 to 1.8.0 (#1530) dependabot[bot] 2023-12-08 08:07:14 +02:00
  • c3e3c4c31c chore: remove refs to deprecated io/ioutil (#1504) guangwu 2023-12-05 16:52:24 +08:00
  • 292678a907 build(deps): bump actions/checkout from 3 to 4 (#1492) dependabot[bot] 2023-12-04 14:18:41 +02:00
  • 0c553cd2f6 fix wrong use of flag in test_items found in 4.13 and 4.14 (#1528) Huang Huang 2023-12-03 15:06:35 +08:00
  • 92a18e7dfd support CIS Kubernetes Benchmark v1.8.0 (#1527) Huang Huang 2023-12-02 15:59:30 +08:00
  • ade7cef969 build(deps): bump gorm.io/gorm from 1.25.1 to 1.25.5 (#1516) dependabot[bot] 2023-12-01 20:11:43 +02:00
  • f8fe5ee173 Add CIS Benchmarks support to Rancher Distributions RKE/RKE2/K3s (#1523) Kiran Bodipi 2023-11-26 15:57:38 +05:30
  • fac90f756e feat(cis-1.24-microk8s): Add support to CIS-1.24 for microk8s distro (#1510) Benjamin Schimke 2023-11-20 12:59:32 +02:00
  • 63055a7332 build(deps): bump github.com/fatih/color from 1.14.1 to 1.16.0 (#1520) dependabot[bot] 2023-11-12 10:47:01 +02:00
  • dc0580cebe build(deps): bump golang from 1.21.1 to 1.21.3 (#1507) dependabot[bot] 2023-11-03 18:33:42 +02:00
  • 0918b41eca build(deps): bump github.com/golang/glog from 1.0.0 to 1.1.2 (#1489) dependabot[bot] 2023-10-27 21:45:30 +03:00
  • 2b466ab239 build(deps): bump docker/setup-qemu-action from 2 to 3 (#1503) dependabot[bot] 2023-10-27 21:35:49 +03:00
  • 55a18aed87 release: prepare-0.6.19 (#1511) v0.6.19 chenk 2023-10-23 10:03:22 +03:00
  • 7f5a2eb78b build(deps): bump docker/build-push-action from 4 to 5 (#1498) dependabot[bot] 2023-10-20 19:31:35 +03:00
  • 18f8456abd release: prepare v0.6.18 (#1509) v0.6.18 chenk 2023-10-17 16:28:52 +03:00
  • 8bc4daae10 release: prepare v0.6.18-rc (#1508) v0.6.18-rc chenk 2023-10-17 11:34:53 +03:00
  • 7ad0f2fee6 updates to the readme AnaisUrlichs 2023-08-10 08:15:29 +01:00
  • 276d30ad75 build(deps): bump crazy-max/ghaction-docker-meta from 4 to 5 (#1499) dependabot[bot] 2023-09-30 19:34:22 +03:00
  • e1c6c80d02 build(deps): bump golang from 1.20.6 to 1.21.1 (#1494) dependabot[bot] 2023-09-16 12:59:20 +03:00
  • 34ef478b41 build(deps): bump goreleaser/goreleaser-action from 4 to 5 (#1495) dependabot[bot] 2023-09-12 08:11:27 +03:00
  • 3ef3e9a861 build(deps): bump alpine from 3.18.2 to 3.18.3 (#1487) dependabot[bot] 2023-09-09 21:37:29 +03:00
  • d70459b77c build(deps): bump golang from 1.20.4 to 1.20.6 (#1475) dependabot[bot] 2023-07-28 12:12:45 +03:00
  • 20ad80577c Bump docker base images (#1465) Jonas-Taha El Sesiy 2023-07-26 17:22:19 +02:00
  • 456684462a release: prepare v0.6.17 (#1480) v0.6.17 chenk 2023-07-25 12:41:24 +03:00
  • c8cabc4b14 Update job.yaml (#1477) Guille Vigil 2023-07-25 11:30:14 +02:00
  • 8c6915c478 release: prepare v0.6.16 official (#1479) v0.6.16 chenk 2023-07-25 10:33:54 +03:00
  • 9363cdf8ef release: prepare v0.6.16-rc (#1476) v0.6.16-rc chenk 2023-07-24 11:01:43 +03:00
  • b29ed6b6ed chore: add fips compliant images (#1473) Devendra Turkar 2023-07-24 12:32:19 +05:30
  • aa16551811 Fix node.yaml - 4.1.7 and 4.1.8 audit by adding uniq (#1472) Andy Pitcher 2023-07-11 04:45:06 -04:00
  • 40cdc1bfbb Fix test_items in cis-1.7 - node - 4.2.12 (#1469) Andy Pitcher 2023-07-02 03:50:07 -04:00
  • e2e353a81a build(deps): bump actions/setup-go from 3 to 4 (#1402) dependabot[bot] 2023-06-24 19:42:03 +03:00
  • a727d73e8a build(deps): bump golang from 1.19.4 to 1.20.4 (#1436) dependabot[bot] 2023-06-10 18:07:26 +03:00
  • 5c97f042be Deployed 76c25b2 to v0.6.15 with MkDocs 1.4.3 and mike 1.1.2 aqua-bot 2023-06-06 15:06:00 +00:00
  • 76c25b2db2 release: prepare v0.6.15 (#1455) v0.6.15 chenk 2023-06-06 17:40:44 +03:00
  • ca8743c1f7 add support VMware Tanzu(TKGI) Benchmarks v1.2.53 (#1452) KiranBodipi 2023-06-01 19:07:50 +05:30