|
67 | 67 | - {"provider": "Nutanix", "kubernetesMinor": "v1.30", "kubernetesVersion": "v1.30.10", "baseOS": "rocky-9.5"} |
68 | 68 | - {"provider": "Nutanix", "kubernetesMinor": "v1.31", "kubernetesVersion": "v1.31.4", "baseOS": "rocky-9.5"} |
69 | 69 | - {"provider": "Nutanix", "kubernetesMinor": "v1.32", "kubernetesVersion": "v1.32.3", "baseOS": "rocky-9.5"} |
70 | | - - {"provider": "Docker", "kubernetesMinor": "v1.30", "kubernetesVersion": "v1.30.12"} |
71 | 70 | - {"provider": "Docker", "kubernetesMinor": "v1.31", "kubernetesVersion": "v1.31.8"} |
72 | 71 | - {"provider": "Docker", "kubernetesMinor": "v1.32", "kubernetesVersion": "v1.32.4"} |
73 | 72 | - {"provider": "Docker", "kubernetesMinor": "v1.33", "kubernetesVersion": "v1.33.0"} |
@@ -116,6 +115,37 @@ jobs: |
116 | 115 | contents: read |
117 | 116 | checks: write |
118 | 117 |
|
| 118 | + cis-benchmark: |
| 119 | + needs: |
| 120 | + - "lint-gha" |
| 121 | + - "lint-go" |
| 122 | + - "lint-test-helm" |
| 123 | + - "pre-commit" |
| 124 | + - "unit-test" |
| 125 | + strategy: |
| 126 | + matrix: |
| 127 | + config: |
| 128 | + - {"provider": "Nutanix", "kubernetesMinor": "v1.32", "kubernetesVersion": "v1.32.3", "baseOS": "rocky-9.5"} |
| 129 | + - {"provider": "Docker", "kubernetesMinor": "v1.33", "kubernetesVersion": "v1.33.0"} |
| 130 | + # Uncomment below once we have the ability to run e2e tests on other providers from GHA. |
| 131 | + # - {"provider": "AWS", "kubernetesMinor": "v1.29", "kubernetesVersion": "v1.29.6"} |
| 132 | + fail-fast: false |
| 133 | + name: CIS Benchmark (${{ matrix.config.provider }} provider, Kubernetes ${{ matrix.config.kubernetesMinor }}) |
| 134 | + uses: ./.github/workflows/e2e.yml |
| 135 | + with: |
| 136 | + focus: Quick start |
| 137 | + provider: ${{ matrix.config.provider }} |
| 138 | + kubernetes-version: ${{ matrix.config.kubernetesVersion }} |
| 139 | + runs-on: ${{ matrix.config.provider == 'Nutanix' && 'self-hosted-ncn-dind' || 'ubuntu-22.04' }} |
| 140 | + base-os: ${{ matrix.config.provider == 'Nutanix' && matrix.config.baseOS || '' }} |
| 141 | + run-cis-benchmark: true |
| 142 | + extra-labels: "cni:Cilium && addonStrategy:HelmAddon" |
| 143 | + secrets: inherit |
| 144 | + permissions: |
| 145 | + contents: read |
| 146 | + checks: write |
| 147 | + |
| 148 | + |
119 | 149 | lint-go: |
120 | 150 | runs-on: ubuntu-22.04 |
121 | 151 | strategy: |
|
0 commit comments