Skip to content

Commit

Permalink
gets wlKnownNames as input from config
Browse files Browse the repository at this point in the history
  • Loading branch information
YiscahLevySilas1 committed Sep 14, 2021
1 parent 1393c37 commit 21441f0
Showing 1 changed file with 2 additions and 4 deletions.
6 changes: 2 additions & 4 deletions rules/rule-name-similarity/raw.rego
Original file line number Diff line number Diff line change
@@ -1,6 +1,7 @@
package armo_builtins
# import data.cautils as cautils
# import data.kubernetes.api.client as client
import data

# input: pods
# apiversion: v1
Expand All @@ -11,10 +12,7 @@ deny[msga] {
wanted_kinds := {"Pod", "ReplicaSet", "Job"}
wanted_kinds[object.kind]

wl_known_names := {"coredns", "kube-proxy",
"event-exporter-gke", "kube-dns", "17-default-backend", "metrics-server",
"ca-audit", "ca-dashboard-aggregator","ca-notification-server", "ca-ocimage","ca-oracle",
"ca-posture", "ca-rbac", "ca-vuln-scan", "ca-webhook", "ca-websocket", "clair-clair"}
wl_known_names := data.postureControlInputs.wlKnownNames
wl_name := wl_known_names[_]
contains(object.metadata.name, wl_name)

Expand Down

0 comments on commit 21441f0

Please sign in to comment.