-
```
Policy indexing doesn't appear to work with AttributeRetrievers.
(PolicyCache line 199.) There's not any reason why this shouldn't be able
to be supported is there? If you knew which attributes yo…
-
Add possibility to use any Expression in a Target element (like Condition):
**First option - not backward-compatible:**
Change the TargetType in the XACML core schema (new major release):
``…
-
## Introduction
Purpose of this ticket is to discuss changes to our policies for kernel APIs as they relate to returning error values.
### Problem description
Currently, we have the following…
-
Jamison Roberts @jtroberts83 12:02
@kapilt Would there be a way to limit what api calls are being made when running an s3 policy? The reason I ask is because we have a few S3 lambda based policies th…
-
### Specification
In order to keep nodes from networks connecting to other networks that they are not supposed to, we need to implement some mechanism during the connection establishment process th…
-
I would like to evaluate multiple PR title requirements using policy-bot but not on autogenerated PRs.
For example:
```
policy:
approval:
# Always allow whitesource and codegenie PRs
-…
-
### Describe the bug
We tired remediating the RDP ingress connection from some specific IP’s but filter section does not work as expected.
1. I have tired giving below filter section where it chec…
-
Coming from:
[Meta] Making OpenSearch Extensible https://github.com/opensearch-project/OpenSearch/issues/2447
[Meta] Plugin Sandboxing (a.k.a extensions) https://github.com/opensearch-project/OpenS…
-
I got a bunch of policies that every puppet run, it thinks that I have an incorrect config on my computer.
For example, for the default local administrator (Accounts: Rename administrator account)…
-
### Is there an existing issue for this?
- [X] I have searched the existing issues
### Describe the bug
Consider the following scenario:
An app is running inside an org that is using on prem AD …