Skip to content

Commit 201002a

Browse files
committed
fix: security test in cloud build
Change-Id: Ic299ebf7926b74419ffd1d85290e840c0bbb85f7
1 parent 652cfe8 commit 201002a

File tree

1 file changed

+1
-2
lines changed

1 file changed

+1
-2
lines changed

security_test/config.yaml

+1-2
Original file line numberDiff line numberDiff line change
@@ -45,7 +45,7 @@ ignoredObjects:
4545
Kind: "ClusterRole"
4646
Version: "v1"
4747
Namespace: ".*"
48-
Name: "^(cluster-admin|cilium.*|external-metrics-reader|anet-operator-cluster-role|cluster-autoscaler|filestorecsi-resizer-role|pdcsi-snapshotter-role|ca-cr-actor|antrea-agent|egress-nat-controller|pdcsi-resizer-role|snapshot-controller-runner|gce:cloud-provider|gce:beta:kubelet-certificate-rotation|pdcsi-attacher-role|pdcsi-provisioner-role|edit|gke-gmp-system:operator|filestorecsi-provisioner-role|admin|gke-spiffe-issuer|gke-spiffe-user|ca-pr-beta-actor|kubelet-api-admin|gmp-system:operator|gce:beta:kubelet-certificate-bootstrap)$"
48+
Name: "^(cluster-admin|cilium.*|external-metrics-reader|anet-operator-cluster-role|cluster-autoscaler|filestorecsi.*|parallelstore.*|pdcsi-snapshotter-role|ca-cr-actor|antrea-agent|egress-nat-controller|pdcsi-resizer-role|snapshot-controller-runner|gce:cloud-provider|gce:beta:kubelet-certificate-rotation|pdcsi-attacher-role|pdcsi-provisioner-role|edit|gke-gmp-system:operator|filestorecsi-provisioner-role|admin|gke-spiffe-issuer|gke-spiffe-user|ca-pr-beta-actor|kubelet-api-admin|gmp-system:operator|gce:beta:kubelet-certificate-bootstrap)$"
4949

5050
# ClusterRoleBindings (system-related or not security-relevant)
5151
- Group: "rbac.authorization.k8s.io"
@@ -67,4 +67,3 @@ ignoredObjects:
6767
Version: "v1"
6868
Namespace: "default"
6969
Name: "^default$"
70-

0 commit comments

Comments
 (0)