Releases: redhat-cop/rego-policies
Releases · redhat-cop/rego-policies
1.5.5
Tested against
- OpenShift v4.16.4
- Kubernetes v1.29.2 via KinD
What's Changed
- Update github/codeql-action action to v3.25.12 by @renovate in #302
- Update softprops/action-gh-release action to v2.0.7 by @renovate in #303
- Update dependency StyraInc/regal to v0.24.0 by @renovate in #304
- Update github/codeql-action action to v3.25.13 by @renovate in #305
- Update softprops/action-gh-release action to v2.0.8 - autoclosed by @renovate in #306
- Update step-security/harden-runner action to v2.9.0 by @renovate in #307
- added renovate env for schema tag and fixed renovate not bumping by @garethahealy in #308
- Update redhat-cop/github-actions action to v4.3 by @renovate in #309
Full Changelog: 1.5.4...1.5.5
1.5.4
What's Changed
- Update redhat-cop/github-actions digest to d65d064 by @renovate in #282
- Update github/codeql-action action to v3.25.6 by @renovate in #283
- Update dependency open-policy-agent/gatekeeper to v3.16.3 by @renovate in #284
- Update step-security/harden-runner action to v2.8.0 by @renovate in #286
- Update dependency StyraInc/regal to v0.22.0 by @renovate in #285
- Update dependency StyraInc/regal to v0.23.0 by @renovate in #291
- Update dependency open-policy-agent/opa to v0.65.0 by @renovate in #289
- Update step-security/harden-runner action to v2.8.1 by @renovate in #290
- Update github/codeql-action action to v3.25.8 - autoclosed by @renovate in #288
- Update actions/upload-artifact digest to 0b2256b by @renovate in #301
- Update actions/download-artifact digest to fa0a91b by @renovate in #300
- Update softprops/action-gh-release action to v2.0.6 by @renovate in #295
- Update actions/checkout action to v4.1.7 by @renovate in #292
- Update github/codeql-action action to v3.25.11 - autoclosed by @renovate in #294
- Update dependency StyraInc/regal to v0.23.1 by @renovate in #293
- Update dependency open-policy-agent/opa to v0.66.0 by @renovate in #296
Full Changelog: 1.5.3...1.5.4
1.5.3
What's Changed
- Update github/codeql-action action to v3.24.10 by @renovate in #258
- Update dependency StyraInc/regal to v0.20.1 by @renovate in #259
- Update github/codeql-action action to v3.25.1 - autoclosed by @renovate in #260
- Update actions/upload-artifact digest to 6546280 by @renovate in #262
- Update actions/download-artifact digest to 65a9edc by @renovate in #261
- Update dependency open-policy-agent/opa to v0.64.1 by @renovate in #278
- Migrate renovate config by @renovate in #276
- Update ossf/scorecard-action action to v2.3.3 by @renovate in #273
- Update actions/checkout action to v4.1.6 by @renovate in #264
- Update actions/checkout digest to 0ad4b8f by @renovate in #263
- Update github/codeql-action action to v3.25.5 - autoclosed by @renovate in #270
- Update step-security/harden-runner action to v2.7.1 by @renovate in #271
- Update softprops/action-gh-release action to v2.0.5 by @renovate in #274
- Update ghcr.io/yannh/kubeconform Docker tag to v0.6.6 - autoclosed by @renovate in #272
- Update dependency StyraInc/regal to v0.21.3 by @renovate in #275
- Update dependency open-policy-agent/gatekeeper to v3.16.0 by @renovate in #277
- Update helm/kind-action action to v1.10.0 by @renovate in #280
- Update slsa-framework/slsa-github-generator action to v2 by @renovate in #281
Full Changelog: 1.5.2...1.5.3
1.5.2
What's Changed
- Update dependency open-policy-agent/gatekeeper to v3.15.1 by @renovate in #250
- Update github/codeql-action action to v3.24.7 by @renovate in #251
- Update softprops/action-gh-release action to v2.0.4 by @renovate in #252
- Update github/codeql-action action to v3.24.9 by @renovate in #253
- Update slsa-framework/slsa-github-generator action to v1.10.0 by @renovate in #255
- Update dependency StyraInc/regal to v0.19.0 by @renovate in #254
- Update dependency open-policy-agent/opa to v0.63.0 by @renovate in #256
Full Changelog: 1.5.1...1.5.2
v1.5.1
What's Changed
- Update softprops/action-gh-release action to v2 by @renovate in #249
- Update dependency open-policy-agent/opa to v0.62.1 by @renovate in #248
- Update github/codeql-action action to v3.24.6 - autoclosed by @renovate in #246
- Update actions/download-artifact digest to c850b93 by @renovate in #245
- Update dependency StyraInc/regal to v0.18.0 by @renovate in #247
Full Changelog: 1.5.0...1.5.1
v1.5.0
What's Changed
- Update github/codeql-action action to v3 by @renovate in #214
- Update actions/download-artifact action to v4 by @renovate in #215
- Update actions/upload-artifact action to v4 by @renovate in #216
- Update actions/download-artifact digest to f44cd7b by @renovate in #217
- Update github/codeql-action action to v3.22.12 by @renovate in #218
- Update actions/download-artifact digest to 6b208ae by @renovate in #220
- Update actions/upload-artifact digest to 26f96df by @renovate in #221
- Update github/codeql-action action to v3.24.0 by @renovate in #222
- Update actions/upload-artifact digest to 5d5d22a by @renovate in #227
- Update actions/download-artifact digest to eaceaf8 by @renovate in #226
- Update dependency open-policy-agent/gatekeeper to v3.15.0 by @renovate in #228
- Update helm/kind-action action to v1.9.0 by @renovate in #229
- Update dependency StyraInc/regal to v0.16.0 by @renovate in #219
- added harden runner action in audit mode by @garethahealy in #230
- Update StyraInc/setup-regal action to v1 by @renovate in #232
- Update step-security/harden-runner action to v2.7.0 by @renovate in #231
- converted to opa metadata comments via konstraint convert by @garethahealy in #233
- updated schema generation code by @garethahealy in #234
- updated to use kubeconform as kubeval is dead now by @garethahealy in #235
- Pin ghcr.io/yannh/kubeconform Docker tag to e68a0b6 by @renovate in #236
- Update github/codeql-action action to v3.24.1 by @renovate in #237
- Update github/codeql-action action to v3.24.3 by @renovate in #238
- Update github/codeql-action action to v3.24.5 by @renovate in #239
- Update dependency StyraInc/regal to v0.17.0 by @renovate in #240
- fixed multiple regal checks by @garethahealy in #241
- Update actions/download-artifact digest to 87c5514 by @renovate in #242
- Pin open-policy-agent/setup-opa action to 34a30e8 by @renovate in #243
Full Changelog: 1.4.0...1.5.0
v1.4.0
Tested against
- OpenShift 4.14
- Kubernetes 1.27 via KinD
What's Changed
- Configure Renovate by @renovate in #201
- Pin dependencies by @renovate in #203
- Update gaurav-nelson/github-action-markdown-link-check action to v1.0.15 by @renovate in #204
- 🎄 bumped regal and added renovate config 🎄 by @garethahealy in #205
- Pin dependencies by @renovate in #206
- Update dependency StyraInc/regal to v0.14.0 by @renovate in #207
- 🤖 added renovate for gatekeeper version by @garethahealy in #208
- Update dependency open-policy-agent/gatekeeper to v3.14.0 by @renovate in #209
- Update github/codeql-action action to v2.22.9 by @renovate in #212
New Contributors
Full Changelog: 1.3.2...1.4.0
v1.3.2
git log 1.3.1..HEAD --pretty=format:"- %h %s by %an" --no-merges
- 322b71d Bump helm/kind-action from 1.7.0 to 1.8.0 by dependabot[bot]
- f6336d5 updated to gatekeeper 3.11 by Gareth Healy
- ddc427e Add Regal for linting Rego by Anders Eknert
- 7d9b2fc Bump actions/checkout from 3 to 4 by dependabot[bot]
- 07d33a3 tweaked test checking by Gareth Healy
- 6fae029 Bump helm/kind-action from 1.2.0 to 1.7.0 by dependabot[bot]
- 82b0372 Updated gatekeeper to 3.10 (#192) by Gareth Healy
- 4ba7236 reverted version for link checker by Gareth Healy
- f5fcc95 corrected badge url to be for main repo by Gareth Healy
- 30467e6 Bump actions/upload-artifact from 2 to 3 by dependabot[bot]
- f0de4fd Bump gaurav-nelson/github-action-markdown-link-check (#184) by dependabot[bot]
- b17d6f7 updated checkout to v3 (#183) by Gareth Healy
v1.3.1
git log 1.3.0..HEAD --pretty=format:"- %h %s by %an" --no-merges
- 9e22ce5 updated volume path for kube mount due to image changes (#181) by Gareth Healy
- bf0196b removed references to deprek8ion since its deprecated itself (#179) by Gareth Healy
- bc0cb24 removed tyler as hes left RH (#180) by Gareth Healy
- 919eda9 cleanup to make setup and teardown reusable (#177) by Gareth Healy
- 5132d8b fixed affinity input data and rule not looking in correct place (#178) by Gareth Healy
- 2663042 updated pdb to v1 api as v1beta will be removed soon (#175) by Gareth Healy
- 569b6cd split out kind to another ci file as this one is the one that normally fails (#176) by Gareth Healy
- 833f5e9 updated gatekeeper to 3.7.0 (latest) (#174) by Gareth Healy
- 0864a63 Bump actions/checkout from 2.3.4 to 2.4.0 (#172) by dependabot[bot]
- 8398446 fixed ci failing due to #167 (#168) by Gareth Healy
- 9183af4 Bump gaurav-nelson/github-action-markdown-link-check (#166) by dependabot[bot]
- cf99fce container-secret-mounted-envs message fix (#167) by Austin Pray
- adf2b26 added testing best practices via kind (#165) by Gareth Healy
- 93375f8 updated template apiVersion for test resources to be fully qualified (#164) by Gareth Healy
- c81a676 upgraded kind due to networking issue (#163) by Gareth Healy
- fc92e64 added helper code for schema validation from opa eval (#160) by Gareth Healy
- 959a200 added kind support to deploy gatekeeper and crds (#159) by Gareth Healy
v1.3.0
$ git log 1.2.0..HEAD --pretty=format:"- %h %s by %an" --no-merges
- 3cdd04d Bump actions/checkout from 2 to 2.3.4 (#157) by dependabot[bot]
- 14b5c32 Bump gaurav-nelson/github-action-markdown-link-check from 1 to 1.0.12 (#158) by dependabot[bot]
- 7282fc3 Add dependabot for github actions (#156) by Tyler Auerbeck
- 3095f03 added prerequisite resources deployed before tests (#144) by Gareth Healy
- c5fe636 Add cleanup option and ignore missing CRDs (#154) by Tom Donohue
- 32d725b added dc trigger containers name is in containers list (#140) by Gareth Healy
- d2e6a74 added checking to opa-profile to make sure correct policy is run (#150) by Gareth Healy
- 987f212 added example and docs to describe operator deployment (#153) by Gareth Healy
- 4ba812c added policy active to all other gatekeeper policies (#151) by Gareth Healy
- 98f31d8 added @skip-constraint to policies which cannot be deployed against gatekeeper (#152) by Gareth Healy
- f0c7e24 Added wrapper script to make life easier to deploy via prow (#149) by Gareth Healy
- f11f14e added --exempt-namespace for all core namespaces (i.e.: openshift / kube) (#147) by Gareth Healy
- 9463c03 bumped gatekeeper version to latest (#145) by Gareth Healy
- cfc4703 added missing opa eval for pod anti-affinity (#142) by Gareth Healy
- 099fbfb moved comments block to top of file due to konstraint change (#143) by Gareth Healy
- 9fdd292 Added check to see if policy id is in disabled label of namespace (#139) by Gareth Healy
- dd09762 Added anti-affinity policy for pods (#136) by Gareth Healy
- 9067e17 Updated known registry policy to check only domain based values (#137) by Gareth Healy
- ff272e8 Added label selector for java related policies (#138) by Gareth Healy
- 2f4a733 Added linecount check to conftest bats test by garethahealy
- e29985a added policy id to docs/log message by garethahealy
- 2b40e0a added params option to podman policies to remove hardcoded values by garethahealy
- 0746d9b upgraded gatekeeper to v3.2.2 by garethahealy
- 69777f1 Updated code base to use latest konstraint lib (#131) by Gareth Healy
- b1599d0 Updated conftest tests to work against conftest 0.22 (#130) by Gareth Healy
- fd9ae09 Added tekton placeholder (#124) by Gareth Healy
- b14ce1f Regenerated docs (#122) by Gareth Healy
- 95ae57d Delete stale.yml (#121) by Gareth Healy
- 1f026ee Added emit admission events to gatekeeper (#118) by Gareth Healy
- 62be98c Regenerated docs (#117) by Gareth Healy
- 3195c41 Upgraded to gatekeeper 3.1.0 rc1 (#114) by Gareth Healy
- 308bc6d Updated conftest ci to use central (#113) by Gareth Healy
- c27ef4f Added inventory conftest tests (#116) by Gareth Healy
- 4380056 Added new policy for insecure routes (#119) by Andrew Block