Repository Compliance

Compliance Report per Repository is the compliance report for resources that is generated for a particular git repository containing policy resources. A compliance standard contains various controls or rules and policies need to comply with the standard.

To view the Compliance Report per Repository:

  1. Go to Menu>Policy Reports. The Policy Reports can be viewed based on Categories, Clusters, Namespaces, or Repositories.
  2. Click on the Repository category to view the policy reports generated for the different available repositories. Click on the File Type tab to filter the repositories by selecting the desired file type from the dropdown.

image

  1. Next, click on any repository to view the detailed policy reports for that particular repository. The Findings tab opens by default with information related to Findings (with severity), Impact (File Types and #Files), and Status (%Passed, Failed, and Remediations). Filter the findings according to severity status and file types by clicking on the Severity and File Type tabs respectively, and choosing the options from the dropdown.
  2. After that, click on the Compliance tab to view the compliance report generated with the standards for that repository.

image

  1. View more details about the standard by clicking on the compliance card. For example, click on Pod Security Standards - Baseline, to view the standard report for that namespace.
  2. The page contains the report for Controls for the given compliance standard with information related to the Control names, their status, the pass percentage, the number of fail, warn, and pass results, the type of the Controls, and whether the controls are enabled.

image