Bug 1379185

Summary: [RFE] Allow to configure OpenSCAP CVE definitions URL
Product: Red Hat CloudForms Management Engine Reporter: Brennan Vincello <bvincell>
Component: SmartState AnalysisAssignee: Erez Freiberger <efreiber>
Status: CLOSED ERRATA QA Contact: brahmani
Severity: medium Docs Contact:
Priority: medium    
Version: 5.6.0CC: aos-bugs, dajohnso, efreiber, fdewaley, fsimonce, jhardy, jialiu, jokerman, lmeyer, ltsai, misalunk, mmccomas, ncatling, obarenbo, pmukhedk, sacpatil, simaishi
Target Milestone: MVPKeywords: FutureFeature
Target Release: 5.9.0   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard: container
Fixed In Version: 5.9.0.4 Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2018-03-01 13:07:41 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: Container Management Target Upstream Version:
Embargoed:
Bug Depends On: 1462835    
Bug Blocks: 1459189, 1480786    

Description Brennan Vincello 2016-09-25 22:29:29 UTC
Description of problem:

The OpenShift image-scanning module does not work offline - it attempts to download its feed from a fixed URL.  It would be nice if we can set an environment variable to point to an alternate URL where the OpenSCAP utilities can download the OpenSCAP feed. 

Additional info:

Submitted on behalf of customer.

Comment 7 Federico Simoncelli 2017-06-19 16:17:54 UTC
This requires the per-provider instance advanced settings.

Comment 8 Federico Simoncelli 2017-07-12 07:51:32 UTC
Erez can you add the relevant PRs here?
Please move to ON_DEV if you have all the PRs up for review.

Comment 9 Erez Freiberger 2017-07-12 07:56:19 UTC
The main PR in the UI, still WIP:
https://github.com/ManageIQ/manageiq-ui-classic/pull/1652

It depends on:
ManageIQ/manageiq#15398
ManageIQ/manageiq-schema#23
ManageIQ/manageiq-providers-kubernetes#45
ManageIQ/manageiq-providers-openshift#32

Comment 10 brahmani 2017-11-12 14:56:34 UTC
Verify on cfme 5.9.0.8.
update CVE location with value https://www.redhat.com/security/data/metrics/ds --> SSA work OK.

update CVE location with wrong value  https://www.redhat.com/security/data/metrics --> SSA fail with Unable to run OpenSCAP: OpenSCAP error as expected.

Comment 13 errata-xmlrpc 2018-03-01 13:07:41 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2018:0380