1
0
mirror of https://github.com/aquasecurity/kube-bench.git synced 2025-08-05 13:26:17 +00:00

Revert incorrect changes done in rh-1.0 etcd TCs

This commit is contained in:
Deepanshu Bhatia 2024-09-18 00:50:34 +05:30 committed by Md Safiyat Reza
parent 77a1f3a7a0
commit 3bce117071

View File

@ -28,7 +28,7 @@ groups:
- flag: "file"
compare:
op: regex
value: '\/etc\/kubernetes\/static-pod-certs\/secrets\/etcd-all-certs\/etcd-serving-.*\.(?:crt|key)'
value: '\/etc\/kubernetes\/static-pod-certs\/secrets\/etcd-all-serving\/etcd-serving-.*\.(?:crt|key)'
remediation: |
OpenShift does not use the etcd-certfile or etcd-keyfile flags.
Certificates for etcd are managed by the etcd cluster operator.
@ -103,7 +103,7 @@ groups:
- flag: "file"
compare:
op: regex
value: '\/etc\/kubernetes\/static-pod-certs\/secrets\/etcd-all-certs\/etcd-peer-.*\.(?:crt|key)'
value: '\/etc\/kubernetes\/static-pod-certs\/secrets\/etcd-all-peer\/etcd-peer-.*\.(?:crt|key)'
remediation: |
None. This configuration is managed by the etcd operator.
scored: false