Skip to content

SecurityPolicies should have notifiers based on which ns the violation occurs in #18837

@estenaks

Description

@estenaks

The solution today for warning different application teams if their application violates a security policy is having duplicate security policies watching different namespaces with different notifiers going to each team. This creates a high volume of duplicate policies, and balloons the memory usage for the scanner container. Setting up logic for using different notifiers based on which namespace the violation occurs in would drastically reduce the number of duplicate security policies, and simplify policy management.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions