Bug 1379185 - [RFE] Allow to configure OpenSCAP CVE definitions URL
Summary: [RFE] Allow to configure OpenSCAP CVE definitions URL
Keywords:
Status: CLOSED ERRATA
Alias: None
Product: Red Hat CloudForms Management Engine
Classification: Red Hat
Component: SmartState Analysis
Version: 5.6.0
Hardware: Unspecified
OS: Unspecified
medium
medium
Target Milestone: MVP
: 5.9.0
Assignee: Erez Freiberger
QA Contact: brahmani
URL:
Whiteboard: container
Depends On: 1462835
Blocks: 1459189 1480786
TreeView+ depends on / blocked
 
Reported: 2016-09-25 22:29 UTC by Brennan Vincello
Modified: 2021-06-10 11:33 UTC (History)
17 users (show)

Fixed In Version: 5.9.0.4
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2018-03-01 13:07:41 UTC
Category: ---
Cloudforms Team: Container Management
Target Upstream Version:
Embargoed:


Attachments (Terms of Use)


Links
System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2018:0380 0 normal SHIPPED_LIVE Moderate: Red Hat CloudForms security, bug fix, and enhancement update 2018-03-01 18:37:12 UTC

Description Brennan Vincello 2016-09-25 22:29:29 UTC
Description of problem:

The OpenShift image-scanning module does not work offline - it attempts to download its feed from a fixed URL.  It would be nice if we can set an environment variable to point to an alternate URL where the OpenSCAP utilities can download the OpenSCAP feed. 

Additional info:

Submitted on behalf of customer.

Comment 7 Federico Simoncelli 2017-06-19 16:17:54 UTC
This requires the per-provider instance advanced settings.

Comment 8 Federico Simoncelli 2017-07-12 07:51:32 UTC
Erez can you add the relevant PRs here?
Please move to ON_DEV if you have all the PRs up for review.

Comment 9 Erez Freiberger 2017-07-12 07:56:19 UTC
The main PR in the UI, still WIP:
https://github.com/ManageIQ/manageiq-ui-classic/pull/1652

It depends on:
ManageIQ/manageiq#15398
ManageIQ/manageiq-schema#23
ManageIQ/manageiq-providers-kubernetes#45
ManageIQ/manageiq-providers-openshift#32

Comment 10 brahmani 2017-11-12 14:56:34 UTC
Verify on cfme 5.9.0.8.
update CVE location with value https://www.redhat.com/security/data/metrics/ds --> SSA work OK.

update CVE location with wrong value  https://www.redhat.com/security/data/metrics --> SSA fail with Unable to run OpenSCAP: OpenSCAP error as expected.

Comment 13 errata-xmlrpc 2018-03-01 13:07:41 UTC
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.

For information on the advisory, and where to find the updated
files, follow the link below.

If the solution does not work for you, open a new bug report.

https://access.redhat.com/errata/RHSA-2018:0380


Note You need to log in before you can comment on or make changes to this bug.