Skip to content

Scan for vulnerabilities on nodes #1471

@sathieu

Description

@sathieu

It would be great to scan the whole rootfs of the node (excluding common CRI directories like /var/lib/containerd).

This would scan for vulns in systemd, kubeadm, kubelet, ... and any binary locally installed.

Those vulnerabilities would go in a new CRD (nodevulnerabilityreports?).

Metadata

Metadata

Assignees

No one assigned

    Labels

    kind/featureCategorizes issue or PR as related to a new feature.

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions