Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add policies for securing Chef products #2

Merged
merged 1 commit into from
Sep 27, 2022
Merged

Conversation

tas50
Copy link
Member

@tas50 tas50 commented Sep 22, 2022

Signed-off-by: Tim Smith tsmith84@gmail.com

community/chef-infra-workstation.yml Outdated Show resolved Hide resolved
community/chef-infra-client.yml Outdated Show resolved Hide resolved
Copy link
Contributor

@scottford-io scottford-io left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@tas50 Any chance we can get a description for each policy bundle? See this example...

https://github.com/mondoohq/cnspec-policies/blob/main/core/mondoo-github-security.mql.yaml#L10-L30

Also, what are your thoughts on severity and metadata for each control?

community/chef-infra-client.yml Show resolved Hide resolved
community/chef-infra-client.yml Show resolved Hide resolved
@tas50
Copy link
Member Author

tas50 commented Sep 22, 2022

Docs added. Incomplete workstation policy deleted for now

Signed-off-by: Tim Smith <tsmith84@gmail.com>
@scottford-io scottford-io merged commit 5c7eb03 into main Sep 27, 2022
@scottford-io scottford-io deleted the chef_policies branch September 27, 2022 16:28
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants