mirror of
https://github.com/prowler-cloud/prowler.git
synced 2026-01-25 02:08:11 +00:00
fix(kubernetes): solve core net raw check
This commit is contained in:
@@ -18,7 +18,7 @@ class core_minimize_net_raw_capability_admission(Check):
|
||||
capabilities = getattr(security_context, "capabilities", None)
|
||||
if capabilities:
|
||||
add_capabilities = getattr(capabilities, "add", [])
|
||||
if "NET_RAW" in add_capabilities:
|
||||
if add_capabilities and "NET_RAW" in add_capabilities:
|
||||
report.status = "FAIL"
|
||||
report.status_extended = f"Pod {pod.name} has NET_RAW capability in container {container.name}."
|
||||
break
|
||||
|
||||
Reference in New Issue
Block a user