Skip to content

Releases: rancher/security-scan

v0.2.17-rc7

01 Aug 15:51
4c55a11
Compare
Choose a tag to compare
v0.2.17-rc7 Pre-release
Pre-release

What's Changed

  • chore(deps): update module github.com/aquasecurity/kube-bench to v0.8.0 by @renovate-rancher in #215
  • chore(deps): update dependency aquasecurity/kube-bench to v0.8.0 by @renovate-rancher in #214
  • Modify Ensure that the API Server only makes use of Strong Cryptographic Ciphers by @andypitcher in #216
  • kubectl version bump to v1.28.12 by @krunalhinguu in #222
  • chore(deps): update module github.com/urfave/cli/v2 to v2.27.3 by @renovate-rancher in #223
  • K3s etcd check fix by @bvankampen in #218
  • Use variables instead of hardcoded values when possible in RKE2 CIS by @dereknola in #217
  • Transition from GH secrets to Vault by @pjbgf in #220
  • Add proper remediation info for K3s 4.2.XX sections by @dereknola in #219
  • build: Clone and build sonobuoy by @pjbgf in #225
  • Publish Prime images using ecm-distro-tools GHA by @pjbgf in #224
  • build: Force sequential matrix execution and fix workflow file by @pjbgf in #226
  • Add proper remediation info for K3s Master 1.X.XX sections by @dereknola in #221
  • Minor changes around the build process by @pjbgf in #227
  • build: Fix read vault secret syntax by @pjbgf in #229

New Contributors

Full Changelog: v0.2.16...v0.2.17-rc7

v0.2.17-rc6

31 Jul 16:39
af81f1d
Compare
Choose a tag to compare
v0.2.17-rc6 Pre-release
Pre-release

What's Changed

  • Add proper remediation info for K3s Master 1.X.XX sections by @dereknola in #221
  • Minor changes around the build process by @pjbgf in #227

Full Changelog: v0.2.17-rc5...v0.2.17-rc6

v0.2.17-rc5

31 Jul 13:32
5c4c5e9
Compare
Choose a tag to compare
v0.2.17-rc5 Pre-release
Pre-release

What's Changed

  • build: Force sequential matrix execution and fix workflow file by @pjbgf in #226

Full Changelog: v0.2.17-rc4...v0.2.17-rc5

v0.2.17-rc4

31 Jul 13:03
d720221
Compare
Choose a tag to compare
v0.2.17-rc4 Pre-release
Pre-release

What's Changed

  • Add proper remediation info for K3s 4.2.XX sections by @dereknola in #219
  • build: Clone and build sonobuoy by @pjbgf in #225
  • Publish Prime images using ecm-distro-tools GHA by @pjbgf in #224

Full Changelog: v0.2.17-rc1...v0.2.17-rc4

v0.2.17-rc3

30 Jul 15:30
5fc81eb
Compare
Choose a tag to compare
v0.2.17-rc3 Pre-release
Pre-release

What's Changed

  • chore(deps): update dependency kubernetes-sigs/kind to v0.23.0 by @renovate-rancher in #209
  • chore(deps): update module github.com/aquasecurity/kube-bench to v0.7.3 by @renovate-rancher in #189
  • chore(deps): update module github.com/spf13/viper to v1.19.0 by @renovate-rancher in #210
  • Update bci-micro version by @krunalhinguu in #213
  • chore(deps): update module github.com/aquasecurity/kube-bench to v0.8.0 by @renovate-rancher in #215
  • chore(deps): update dependency aquasecurity/kube-bench to v0.8.0 by @renovate-rancher in #214
  • Modify Ensure that the API Server only makes use of Strong Cryptographic Ciphers by @andypitcher in #216
  • kubectl version bump to v1.28.12 by @krunalhinguu in #222
  • chore(deps): update module github.com/urfave/cli/v2 to v2.27.3 by @renovate-rancher in #223
  • K3s etcd check fix by @bvankampen in #218
  • Use variables instead of hardcoded values when possible in RKE2 CIS by @dereknola in #217
  • Transition from GH secrets to Vault by @pjbgf in #220

New Contributors

Full Changelog: v0.2.15...v0.2.17-rc3

v0.2.17-rc2

30 Jul 15:28
5fc81eb
Compare
Choose a tag to compare
v0.2.17-rc2 Pre-release
Pre-release

What's Changed

  • chore(deps): update dependency kubernetes-sigs/kind to v0.23.0 by @renovate-rancher in #209
  • chore(deps): update module github.com/aquasecurity/kube-bench to v0.7.3 by @renovate-rancher in #189
  • chore(deps): update module github.com/spf13/viper to v1.19.0 by @renovate-rancher in #210
  • Update bci-micro version by @krunalhinguu in #213
  • chore(deps): update module github.com/aquasecurity/kube-bench to v0.8.0 by @renovate-rancher in #215
  • chore(deps): update dependency aquasecurity/kube-bench to v0.8.0 by @renovate-rancher in #214
  • Modify Ensure that the API Server only makes use of Strong Cryptographic Ciphers by @andypitcher in #216
  • kubectl version bump to v1.28.12 by @krunalhinguu in #222
  • chore(deps): update module github.com/urfave/cli/v2 to v2.27.3 by @renovate-rancher in #223
  • K3s etcd check fix by @bvankampen in #218
  • Use variables instead of hardcoded values when possible in RKE2 CIS by @dereknola in #217
  • Transition from GH secrets to Vault by @pjbgf in #220

New Contributors

Full Changelog: v0.2.15...v0.2.17-rc2

v0.2.17-rc1

30 Jul 15:25
5fc81eb
Compare
Choose a tag to compare
v0.2.17-rc1 Pre-release
Pre-release

What's Changed

  • chore(deps): update dependency kubernetes-sigs/kind to v0.23.0 by @renovate-rancher in #209
  • chore(deps): update module github.com/aquasecurity/kube-bench to v0.7.3 by @renovate-rancher in #189
  • chore(deps): update module github.com/spf13/viper to v1.19.0 by @renovate-rancher in #210
  • Update bci-micro version by @krunalhinguu in #213
  • chore(deps): update module github.com/aquasecurity/kube-bench to v0.8.0 by @renovate-rancher in #215
  • chore(deps): update dependency aquasecurity/kube-bench to v0.8.0 by @renovate-rancher in #214
  • Modify Ensure that the API Server only makes use of Strong Cryptographic Ciphers by @andypitcher in #216
  • kubectl version bump to v1.28.12 by @krunalhinguu in #222
  • chore(deps): update module github.com/urfave/cli/v2 to v2.27.3 by @renovate-rancher in #223
  • K3s etcd check fix by @bvankampen in #218
  • Use variables instead of hardcoded values when possible in RKE2 CIS by @dereknola in #217
  • Transition from GH secrets to Vault by @pjbgf in #220

New Contributors

Full Changelog: v0.2.15...v0.2.17-rc1

v0.2.16

20 Aug 04:45
ddf7c13
Compare
Choose a tag to compare

What's Changed

  • chore(deps): update dependency kubernetes-sigs/kind to v0.23.0 by @renovate-rancher in #209
  • chore(deps): update module github.com/aquasecurity/kube-bench to v0.7.3 by @renovate-rancher in #189
  • chore(deps): update module github.com/spf13/viper to v1.19.0 by @renovate-rancher in #210
  • Update bci-micro version by @krunalhinguu in #213

Full Changelog: v0.2.15...v0.2.16

v0.2.15

03 May 06:14
7272aac
Compare
Choose a tag to compare

What's Changed

  • Bumped kubectl to v1.28.7 by @chiukapoor in #200
  • Enable auto-bump for kube-bench and sonobuoy by @pjbgf in #199
  • Auto-source KUBECTL digest by @pjbgf in #205
  • Fix audit and remediation for K3s master 1.1.20/1.1.21 by @andypitcher in #206
  • Removed support for versions prior to K8s 1.23 by @chiukapoor in #201
  • chore(deps): update dependency kubernetes-sigs/kind to v0.22.0 by @renovate-rancher in #204
  • chore(deps): update dependency vmware-tanzu/sonobuoy to v0.57.1 by @renovate-rancher in #203
  • k3s profiles: fix remediation for 1.1.20 and 1.1.21 checks by @vardhaman22 in #207
  • chore(deps): update module github.com/urfave/cli/v2 to v2.27.2 by @renovate-rancher in #208

New Contributors

Full Changelog: v0.2.14...v0.2.15

v0.2.15-rc2

30 Apr 14:24
c34215b
Compare
Choose a tag to compare
v0.2.15-rc2 Pre-release
Pre-release

What's Changed

  • Auto-source KUBECTL digest by @pjbgf in #205
  • Fix audit and remediation for K3s master 1.1.20/1.1.21 by @andypitcher in #206
  • Removed support for versions prior to K8s 1.23 by @chiukapoor in #201
  • chore(deps): update dependency kubernetes-sigs/kind to v0.22.0 by @renovate-rancher in #204
  • chore(deps): update dependency vmware-tanzu/sonobuoy to v0.57.1 by @renovate-rancher in #203
  • k3s profiles: fix remediation for 1.1.20 and 1.1.21 checks by @vardhaman22 in #207

Full Changelog: v0.2.15-rc1...v0.2.15-rc2