Skip to content

Releases: FairwindsOps/polaris

7.2.1

04 Jan 15:20
8af4363
Compare
Choose a tag to compare

Changelog

You can verify the signature of the checksums.txt file using cosign.

cosign verify-blob checksums.txt --signature=checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub

7.2.0

14 Nov 22:56
467d06f
Compare
Choose a tag to compare

Changelog

  • 467d06f FWI-2719: Enable new RBAC / sensitive content / Pod exec checks, add hasPrefix and hasSuffix functions to the GO template, exempt system: name prefixes for RBAC checks, sensitive content checks ignore valueFrom, (#832)

You can verify the signature of the checksums.txt file using cosign.

cosign verify-blob checksums.txt --signature=checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub

7.1.6

02 Nov 17:40
Compare
Choose a tag to compare

Changelog

  • 29102de Build docker images using goreleaser and support arm64 (#845)
  • 587396a Bump k8s.io/api from 0.25.0 to 0.25.3 (#862)
  • 45be5cb FWI-2912: Add logging to improve debugging of JSON Schema (#859)
  • b3d842a Fix CI tag filters and re-enable docs (#852)
  • 4091355 Managed by Terraform
  • 6ef87be update dependencies (#867)

You can verify the signature of the checksums.txt file using cosign.

cosign verify-blob checksums.txt --signature=checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub

7.1.5

22 Sep 18:26
Compare
Choose a tag to compare

Changelog

You can verify the signature of the checksums.txt file using cosign.

cosign verify-blob checksums.txt --signature=checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub

7.1.4

22 Sep 15:59
68e2757
Compare
Choose a tag to compare

Changelog

You can verify the signature of the checksums.txt file using cosign.

cosign verify-blob checksums.txt --signature=checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub

7.0.2

22 Aug 13:54
b90f091
Compare
Choose a tag to compare

Changelog

  • be45519 Add target PodTemplate which exposes the full Pod (not only the spec) (#801)
  • f9e2603 Bump alpine from 3.16.0 to 3.16.1 (#810)
  • 7addced Bump github.com/sirupsen/logrus from 1.8.1 to 1.9.0 (#815)
  • 76c42c4 Bump github.com/spf13/cobra from 1.4.0 to 1.5.0 (#813)
  • 4103032 Bump github.com/stretchr/testify from 1.7.1 to 1.8.0 (#786)
  • 65add73 Bump k8s.io/api from 0.24.1 to 0.24.3 (#808)
  • af0d548 Bump k8s.io/apimachinery from 0.24.1 to 0.24.3 (#807)
  • 3efa3b4 Bump k8s.io/client-go from 0.24.1 to 0.24.3 (#806)
  • 7e77350 Bump sigs.k8s.io/controller-runtime from 0.12.1 to 0.12.3 (#814)
  • e5b9236 FWI-2476: Add missingNetworkPolicy, automountServiceAccountToken, and linuxHardening checks (#816)
  • 2063222 FWI-2509: Add sensitiveContainerEnvVar and sensitiveConfigMapContent checks (#817)
  • 50d789f Fix resourceKindMap.addResource() to not assume every Kind has an APIGroup (#805)
  • e3a6cb3 Fix namespace checking when validating additional schemas which are not namespaced (#822)
  • a0000e1 Suppress empty results when --only-show-failed-tests is passed (#811)
  • 25ab600 Update docs to reflect target: PodTemplate RE: PR #801 (#804)
  • c3b57bf target: container also populates .Polaris.PodSpec|PodTemplate + a new .Polaris.Container representing the currently checked container, GetPodTemplate serializes data to work around a DeepCopy bug with type int (#812)
  • ccaa384 expose Polaris.PodSpec for PodSpec targeted checks (#793)
  • b90f091 fix polaris cves (#824)
  • 652b65b fix: properly remove emojis in pretty format with no color (#765)

You can verify the signature of the checksums.txt file using cosign.

cosign verify-blob checksums.txt --signature=checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub

7.0.1

11 Jul 19:09
1c09ce9
Compare
Choose a tag to compare

Changelog

You can verify the signature of the checksums.txt file using cosign.

cosign verify-blob checksums.txt --signature=checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub

7.0.0

11 Jul 17:45
acadebe
Compare
Choose a tag to compare

Changelog

You can verify the signature of the checksums.txt file using cosign.

cosign verify-blob checksums.txt --signature=checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub

6.0.0

05 May 15:09
6b7d6ab
Compare
Choose a tag to compare

Changelog

You can verify the signature of the checksums.txt file using cosign.

cosign verify-blob checksums.txt --signature=checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub

5.2.0

08 Apr 14:01
78838a6
Compare
Choose a tag to compare

Changelog

  • 78838a6 Add a --namespace flag to the in-cluster audit (#742)
  • a4c0b0f Add mutation field to imagePolicyNotAlways (#712)
  • a7e3007 Bump alpine from 3.15.0 to 3.15.1 (#731)
  • f2833f2 Bump alpine from 3.15.1 to 3.15.2 (#733)
  • 82d3663 Bump alpine from 3.15.2 to 3.15.3 (#739)
  • 861fd42 Bump golang from 1.17.7 to 1.17.8 (#716)
  • bd8b296 Fix license headers (#736)
  • 1841b74 audit check specific checks when passing checks args (#737)
  • fd16fb9 merge the list of resources from custom checks and the generated controller list before deduplicating them (#727)
  • ce8786b update x/text (#740)

You can verify the signature of the checksums.txt file using cosign.

cosign verify-blob checksums.txt --signature=checksums.txt.sig  --key https://artifacts.fairwinds.com/cosign.pub