From f6eb1e9db47ff9251402903f77b8dafb5a94f60c Mon Sep 17 00:00:00 2001 From: alexlebens Date: Fri, 12 Jul 2024 16:13:08 -0500 Subject: [PATCH] enable some scanners --- clusters/cl01tl/monitoring/trivy/values.yaml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/clusters/cl01tl/monitoring/trivy/values.yaml b/clusters/cl01tl/monitoring/trivy/values.yaml index cd12fa6f4..4d9846074 100644 --- a/clusters/cl01tl/monitoring/trivy/values.yaml +++ b/clusters/cl01tl/monitoring/trivy/values.yaml @@ -1,6 +1,6 @@ trivy-operator: targetNamespaces: authentik,ghost,matrix-synapse,element-web,outline,freshrss,code-server,vikunja,cops,gitea - excludeNamespaces: "" + excludeNamespaces: kube-system targetWorkloads: "pod,replicaset,replicationcontroller,statefulset,daemonset,cronjob,job" operator: replicas: 2 @@ -43,9 +43,9 @@ trivy-operator: valuesFromConfigMap: "" valuesFromSecret: "" sbomGenerationEnabled: true - clusterSbomCacheEnabled: true - clusterComplianceEnabled: false - configAuditScannerEnabled: false + clusterSbomCacheEnabled: true + clusterComplianceEnabled: true + configAuditScannerEnabled: true exposedSecretScannerEnabled: true infraAssessmentScannerEnabled: false rbacAssessmentScannerEnabled: true