As a CSP, I want to continuously scan my container infrastructure for security weaknesses so that I can prevent security gaps in my Kubernetes clusters.
This issue focusses on the Trivy Operator which is deployed in CaaS clusters and runs continuously. The reports are uploaded to DefectDojo.
ping @90n20
The one-time run of Trivy in the Zuul k8s security pipeline is contained in #659.
As a CSP, I want to continuously scan my container infrastructure for security weaknesses so that I can prevent security gaps in my Kubernetes clusters.
This issue focusses on the Trivy Operator which is deployed in CaaS clusters and runs continuously. The reports are uploaded to DefectDojo.
ping @90n20
The one-time run of Trivy in the Zuul k8s security pipeline is contained in #659.