- Issued:
- 2021-05-26
- Updated:
- 2021-05-26
RHBA-2021:1348 - Bug Fix Advisory
Synopsis
Compliance Operator version 0.1.32 for OpenShift Container Platform 4.6
Type/Severity
Bug Fix Advisory
Topic
An updated Compliance Operator image is now available for OpenShift Container Platform 4.6.
Version 0.1.32:
- Add resource limits for all workloads
- Fix formatting of content parsing: this makes the descriptions and overall text we parse of profiles, rules and variables more readable.
- Adds warnings to ComplianceCheckResult: Useful to expose deprecations, node dependencies or service dependencies.
- Adds fips feature flag for OLM.
- CSV links are fixed.
- Enhance TailoredProfile validation.
- Move relevant workloads to be scheduled on the master nodes only.
Description
The Compliance Operator version 0.1.32 image update is now available for OpenShift Container Platform 4.6.
Solution
Before applying this update, make sure all previously released errata
relevant to your system have been applied.
For details on how to apply this update, refer to:
Affected Products
- Red Hat OpenShift Container Platform 4.6 for RHEL 8 x86_64
Fixes
- BZ - 1953521 - one of the rules [xccdf_org.ssgproject.content_rule_audit_rules_privileged_commands] taking too long... Such scans via Compliance Operator were taking around 2 hours, even.
- BZ - 1953522 - Instructions for some rules in Compliance Operator
- BZ - 1953523 - The instructions are missing for some rules those report status ‘MANUAL’
CVEs
(none)
References
(none)
The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.