enable some scanners
This commit is contained in:
@@ -14,22 +14,12 @@ trivy-operator:
|
||||
scannerReportTTL: "24h"
|
||||
cacheReportTTL: "120h"
|
||||
batchDeleteLimit: 10
|
||||
vulnerabilityScannerScanOnlyCurrentRevisions: true
|
||||
configAuditScannerScanOnlyCurrentRevisions: true
|
||||
batchDeleteDelay: 10s
|
||||
accessGlobalSecretsAndServiceAccount: true
|
||||
builtInTrivyServer: false
|
||||
builtInServerRegistryInsecure: false
|
||||
controllerCacheSyncTimeout: "15m"
|
||||
trivyServerHealthCheckCacheExpiration: 10h
|
||||
metricsFindingsEnabled: true
|
||||
metricsVulnIdEnabled: false
|
||||
metricsExposedSecretInfo: false
|
||||
metricsConfigAuditInfo: false
|
||||
metricsRbacAssessmentInfo: false
|
||||
metricsInfraAssessmentInfo: false
|
||||
metricsImageInfo: false
|
||||
metricsClusterComplianceInfo: false
|
||||
serverAdditionalAnnotations: {}
|
||||
webhookBroadcastURL: ""
|
||||
webhookBroadcastTimeout: 30s
|
||||
@@ -46,10 +36,20 @@ trivy-operator:
|
||||
clusterSbomCacheEnabled: true
|
||||
clusterComplianceEnabled: true
|
||||
configAuditScannerEnabled: true
|
||||
configAuditScannerScanOnlyCurrentRevisions: true
|
||||
exposedSecretScannerEnabled: true
|
||||
infraAssessmentScannerEnabled: false
|
||||
infraAssessmentScannerEnabled: true
|
||||
rbacAssessmentScannerEnabled: true
|
||||
vulnerabilityScannerEnabled: false
|
||||
vulnerabilityScannerScanOnlyCurrentRevisions: true
|
||||
metricsFindingsEnabled: true
|
||||
metricsVulnIdEnabled: false
|
||||
metricsExposedSecretInfo: false
|
||||
metricsConfigAuditInfo: false
|
||||
metricsRbacAssessmentInfo: false
|
||||
metricsInfraAssessmentInfo: false
|
||||
metricsImageInfo: false
|
||||
metricsClusterComplianceInfo: false
|
||||
service:
|
||||
headless: true
|
||||
metricsPort: 80
|
||||
|
Reference in New Issue
Block a user