fluxcd / notification-controller

The GitOps Toolkit event forwarded and notification dispatcher

Home Page:https://fluxcd.io

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

Notification Controller could notify on security misconfigurations

pjbgf opened this issue · comments

This issue tracks the spike on one of the CNCF Tag Security recommendations: Use notification controller for user/admin awareness of Flux configuration/misconfiguration in teams/slack.

Justification: Soft multi-tenancy security relies upon lockdown mode, however this is not enabled by default.

The scope here would be around security misconfigurations, such as not complying with some of the best practices (e.g. start-up flags).