aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorCédric Ollivier <cedric.ollivier@orange.com>2020-08-14 11:32:07 +0200
committerCédric Ollivier <cedric.ollivier@orange.com>2020-08-14 11:32:07 +0200
commit481272de52b0a5bb87ebf9a7a4b68323af9edfe7 (patch)
tree417ae1a9624d82491969f5834d2acbdb6f086143
parent948ffc5596d2d48116e087a577f3ca06146fae3c (diff)
Pin latest versions from security tools
It selects kube-bench and kube-hunter 0.3.1. Change-Id: Icb85f3d0d88056370500ec827ef77c215740e5e4 Signed-off-by: Cédric Ollivier <cedric.ollivier@orange.com> (cherry picked from commit 6b8384b57a0bfc200c15ed9ded71544c33a27e81)
-rw-r--r--functest_kubernetes/security/kube-bench.yaml2
-rw-r--r--functest_kubernetes/security/kube-hunter.yaml3
2 files changed, 3 insertions, 2 deletions
diff --git a/functest_kubernetes/security/kube-bench.yaml b/functest_kubernetes/security/kube-bench.yaml
index ec42ba16..38a2ef60 100644
--- a/functest_kubernetes/security/kube-bench.yaml
+++ b/functest_kubernetes/security/kube-bench.yaml
@@ -12,7 +12,7 @@ spec:
hostPID: true
containers:
- name: kube-bench
- image: aquasec/kube-bench:latest
+ image: aquasec/kube-bench:0.3.1
command: ["kube-bench"]
volumeMounts:
- name: var-lib-etcd
diff --git a/functest_kubernetes/security/kube-hunter.yaml b/functest_kubernetes/security/kube-hunter.yaml
index ce88c062..b4452a57 100644
--- a/functest_kubernetes/security/kube-hunter.yaml
+++ b/functest_kubernetes/security/kube-hunter.yaml
@@ -1,3 +1,4 @@
+---
apiVersion: batch/v1
kind: Job
metadata:
@@ -7,7 +8,7 @@ spec:
spec:
containers:
- name: kube-hunter
- image: aquasec/kube-hunter
+ image: aquasec/kube-hunter:0.3.1
command: ["python", "kube-hunter.py"]
args: ["--pod"]
restartPolicy: Never