aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorCédric Ollivier <cedric.ollivier@orange.com>2020-08-14 11:32:07 +0200
committerCédric Ollivier <cedric.ollivier@orange.com>2020-08-14 11:32:07 +0200
commit6b8384b57a0bfc200c15ed9ded71544c33a27e81 (patch)
tree32bafc4f255d157e5328a7b7e15633694ce6722c
parenta1c181e7573a7ae4066513b5411d270463d403cc (diff)
Pin latest versions from security tools
It selects kube-bench and kube-hunter 0.3.1. Change-Id: Icb85f3d0d88056370500ec827ef77c215740e5e4 Signed-off-by: Cédric Ollivier <cedric.ollivier@orange.com>
-rw-r--r--functest_kubernetes/security/kube-bench.yaml2
-rw-r--r--functest_kubernetes/security/kube-hunter.yaml3
2 files changed, 3 insertions, 2 deletions
diff --git a/functest_kubernetes/security/kube-bench.yaml b/functest_kubernetes/security/kube-bench.yaml
index ec42ba16..38a2ef60 100644
--- a/functest_kubernetes/security/kube-bench.yaml
+++ b/functest_kubernetes/security/kube-bench.yaml
@@ -12,7 +12,7 @@ spec:
hostPID: true
containers:
- name: kube-bench
- image: aquasec/kube-bench:latest
+ image: aquasec/kube-bench:0.3.1
command: ["kube-bench"]
volumeMounts:
- name: var-lib-etcd
diff --git a/functest_kubernetes/security/kube-hunter.yaml b/functest_kubernetes/security/kube-hunter.yaml
index ce88c062..b4452a57 100644
--- a/functest_kubernetes/security/kube-hunter.yaml
+++ b/functest_kubernetes/security/kube-hunter.yaml
@@ -1,3 +1,4 @@
+---
apiVersion: batch/v1
kind: Job
metadata:
@@ -7,7 +8,7 @@ spec:
spec:
containers:
- name: kube-hunter
- image: aquasec/kube-hunter
+ image: aquasec/kube-hunter:0.3.1
command: ["python", "kube-hunter.py"]
args: ["--pod"]
restartPolicy: Never