Bug 1404392
Summary: | SCAP Security Guide false positives when scanning Docker containers | ||
---|---|---|---|
Product: | Red Hat Enterprise Linux 7 | Reporter: | Martin Preisler <mpreisle> |
Component: | scap-security-guide | Assignee: | Watson Yuuma Sato <wsato> |
Status: | CLOSED ERRATA | QA Contact: | Matus Marhefka <mmarhefk> |
Severity: | high | Docs Contact: | Mirek Jahoda <mjahoda> |
Priority: | medium | ||
Version: | 7.4 | CC: | mhaicman, mmarhefk, openscap-maint |
Target Milestone: | rc | ||
Target Release: | --- | ||
Hardware: | All | ||
OS: | Unspecified | ||
Whiteboard: | |||
Fixed In Version: | scap-security-guide-0.1.32-1.el7 | Doc Type: | Enhancement |
Doc Text: |
_scap-security-guide_ and *oscap-docker* now support containers
The user can now use the *oscap-docker* utility and the SCAP Security Guide to assess compliance of container or container image without encountering false positive results. Tests that make no sense in container context, such as partitioning, has been set to the `not applicable` value, and containers can be now scanned with a selected security policy.
|
Story Points: | --- |
Clone Of: | Environment: | ||
Last Closed: | 2017-08-01 12:24:43 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: |
Description
Martin Preisler
2016-12-13 18:08:05 UTC
Upstream fixes: - https://github.com/OpenSCAP/scap-security-guide/pull/1716 - https://github.com/OpenSCAP/scap-security-guide/pull/1670 - https://github.com/OpenSCAP/scap-security-guide/pull/1645 Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://access.redhat.com/errata/RHBA-2017:2064 |