- Issued:
- 2021-09-07
- Updated:
- 2021-09-07
RHBA-2021:3214 - OpenShift Compliance Operator bug fix and enhancement update
Synopsis
OpenShift Compliance Operator bug fix and enhancement update
Type/Severity
Bug Fix Advisory None
Topic
An updated OpenShift Compliance Operator image that fixes various bugs and adds enhancements is now available for the Red Hat OpenShift Enterprise 4 catalog.
Description
The OpenShift Compliance Operator image update is available with the following changes:
- Allow profileparser to parse PCI DSS references
- Add permission for Operator to remediate PrometheusRule objects
- Print Compliance Operator version on startup
- Update wording in TailoredProfile custom resource definition (CRD)
- e2e: aggregating/NA metric value
- Bug 1990836: Move metrics service creation back into Operator startup
- Add fetch-git-tags make target
- Add a must-gather plugin
- Bug 1946512: Use latest for CSV documentation link
- Note that rolling back images in ProfileBundle is not well supported
- Controller metrics e2e testing
- Add initial controller metrics support
- Vendor deps
- Bump the suitererunner resource limits
- Fix instructions on building VMs
- Add NERC-CIP reference support
- The remediation templating design doc Squashed
- Add implementation of enforcement remediations
- tailoring: Update the tailoring CM on changes
Solution
Before applying this update, make sure all previously released errata relevant to your system have been applied. For details on how to apply this update, refer to:
https://access.redhat.com/articles/11258
Affected Products
| Product | Version | Arch |
|---|---|---|
| Red Hat OpenShift Container Platform | 4.8 | x86_64 |
| Red Hat OpenShift Container Platform | 4.7 | x86_64 |
| Red Hat OpenShift Container Platform | 4.6 | x86_64 |
Fixes
- This content is not included.BZ - 1946512
- This content is not included.BZ - 1972559
- This content is not included.BZ - 1975358
- This content is not included.BZ - 1982142
- This content is not included.BZ - 1983878
- This content is not included.BZ - 1990836
CVEs
(none)
References
Additional information
- The Red Hat security contact is This content is not included.secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.
- Offline Security Data data is available for integration with other systems. See Offline Security Data API to get started.