Take latest Rally K8S patch into account
[functest-kubernetes.git] / docker / security / testcases.yaml
1 ---
2 tiers:
3   - name: security
4     description: >-
5       Set of basic security tests.
6     testcases:
7       - case_name: kube_hunter
8         project_name: functest
9         criteria: 100
10         blocking: false
11         description: >-
12           Check that the kubernetes cluster has no known
13           vulnerabilities
14         run:
15           name: kube_hunter
16
17       - case_name: kube_bench_master
18         project_name: functest
19         criteria: 100
20         blocking: false
21         description: >-
22           Checks whether Kubernetes is deployed securely by running
23           the master checks documented in the CIS Kubernetes
24           Benchmark.
25         run:
26           name: kube_bench
27           args:
28             target: master
29
30       - case_name: kube_bench_node
31         project_name: functest
32         criteria: 100
33         blocking: false
34         description: >-
35           Checks whether Kubernetes is deployed securely by running
36           the node checks documented in the CIS Kubernetes
37           Benchmark.
38         run:
39           name: kube_bench
40           args:
41             target: node