cruise-automation / k-rail

Kubernetes security tool for policy enforcement
Apache License 2.0
444 stars 54 forks source link

Add disallow nginx snippet policy #126

Closed max0ne closed 2 years ago

max0ne commented 2 years ago

This adds a policy to disallow usages of all NGINX snippet annotations, in response to NGINX Ingress Controller vulnerability CVE-2021-25742