CMP-4110: Implement CIS OpenShift version 1.9.0#14431
Open
rhmdnd wants to merge 7 commits intoComplianceAsCode:masterfrom
Open
CMP-4110: Implement CIS OpenShift version 1.9.0#14431rhmdnd wants to merge 7 commits intoComplianceAsCode:masterfrom
rhmdnd wants to merge 7 commits intoComplianceAsCode:masterfrom
Conversation
Collaborator
rhmdnd
commented
Feb 19, 2026
- Bump CIS OpenShift version from 1.7.0 to 1.9.0
- Add CIS OpenShift 1.9.0 profile and controls
- Implement CIS OpenShift v1.9.0 section 1
- Add CIS OpenShift v1.9.0 section 2
- Implement CIS OpenShift v1.9.0 section 3
- Implement CIS OpenShift v1.9.0 section 4
- Implement CIS OpenShift v1.9.0 section 5
Version 1.9.0 was released last month. Let's update the profile to match the latest version. Assisted-By: Claude Opus 4.6
CIS 1.9.0 benchmark has some minor differences from 1.7.0. Let's add some separate control files for 1.9.0 so we can make those changes without affecting 1.7.0. Assisted-By: Claude Opus 4.6
Section 1 remains largely the same as version 1.7.0, with minor differences: - 1.1.12 had a wording change in the title - 1.2.2 and 1.2.3 were removed in version 1.9.0 causing the control IDs to shift - 1.3.5 was removed in version 1.9.0 This commit accounts for those removals and indexing changes. Assisted-By: Claude Opus 4.6
This section remains the same as version 1.7.0. Assisted-By: Claude Opus 4.6
This section remains the same as version 1.7.0. Assisted-By: Claude Opus 4.6
This section is largely the same as version 1.7.0 with one minor wording change to control 4.2.8, otherwise the technical controls are the same. Assisted-By: Claude Opus 4.6
This section remains the same as version 1.7.0. Assisted-By: Claude Opus 4.6
Collaborator
|
Pre-merge verification passed on OCP 4.18 + compliance operator 1.8.2 +content build with this PR.
|
|
Passed on OCP 4.21:
|
Collaborator
|
/lgtm |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.