How can I add proxy information to CloudForms SmartState Analysis pods in an OpenShift environment?

Solution Verified - Updated -


  • When attempting to use SmartState Analysis to scan images in an OpenShift repository, either provided by Red Hat or hosted elsewhere, the SmartState Analysis pod will never complete, instead producing an error similar to the following in the CloudForms appliance's evm.log:
[----] E, [2018-01-18T16:48:01.807391 #13031:515130] ERROR -- : Q-task_id([dba3150e-fca9-11e7-8e7d-005056bc964f]) MIQ(ManageIQ::Providers::Kubernetes::ContainerManager::Scanning::Job#collect_compliance_data) collecting compliance data for with error: HTTP status code 500, OpenSCAP Error: Unable to run OpenSCAP: Unable to retreive the CVE file: Could not download file Get dial tcp getsockopt: connection refused
  • If this occurs in an environment where a proxy is necessary to connect to outside resources such as the image repository being utilized by OpenShift, adding proxy credentials to the OpenShift pod created by the CloudForms SmartState Analysis process may be required.
  • Alternatively, SmartState Analysis may complete, but OpenSCAP data may not be populated in either the CloudForms user interface or reports.


  • Red Hat CloudForms 4.5 and earlier

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.

Current Customers and Partners

Log in for full access

Log In