Skip to content

Sysdig - Remediate Workload p1monitor:p1monitor #4

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

sysdig-aws-eu-1[bot]
Copy link

Sysdig opened the pull request on behalf of Marcel Claassen.

Sysdig analysis found violations for workload "p1monitor"

The PR includes remediations for the following attributes: "SecurityContext.RunAsUser"


Remediated Attribute: "SecurityContext.RunAsUser"
  • Severity: 🔴 High
  • Source:
    • Container: p1monitor
  • Violated Control:
    • Container running as root
      Running containers as root can result in pod escape
  • Change Impact: The container will run the image with the defined user.

The following policy requirements applied to this resource include the above control:

Requirement Policy
5.2.7 Minimize the admission of root containers CIS Kubernetes V1.23 Benchmark

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants