Security
Changed
- Remove shared app collection from circle CI
- Dependencies: replaced
github.com/giantswarm/operatorkit/v8 with github.com/giantswarm/operatorkit/v7 (latest version)
Changed
- Removed
application.giantswarm.io/team label from ServiceMonitor.
Added
- Adds
VerticalPodAutoscaler for kyverno-plugin deployment.
Changed
VericalPodAutoscaler can now be enabled for individual components.- Removes GiantSwarm specific labels from
monitoring ServiceMonitors. - Update
kyverno-policy-reporter to upstream version 2.14.0 / chart version 2.18.0.
Added
- Chart: Add
CiliumNetworkPolicy. (#301)
Changed
- Push to
kvm and capz app collections.
Changed
- Don’t push to
openstack-app-collection. - Rename
vmware-app-collection to vsphere-app-collection. - Consider PolicyExceptions from all namespaces.
Added
- Added Kyverno
PolicyExceptions for necessary capabilities normally prohibited by PSS policies.
Changed
- Update
kyverno to upstream version 1.9.2 / chart version 2.7.2.