Skip to content

Commit e1b8afe

Browse files
Merge pull request #85820 from kcarmichael08/ROX-21712-compliance-operator
ROX-21712: Add note about compliance operator
2 parents 99f0232 + 1c7b415 commit e1b8afe

File tree

1 file changed

+7
-3
lines changed

1 file changed

+7
-3
lines changed

operating/compliance-operator-rhacs.adoc

Lines changed: 7 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -8,12 +8,16 @@ toc::[]
88

99
[role="_abstract"]
1010
You can configure {product-title-short} to use the Compliance Operator for compliance reporting and remediation with {ocp} clusters. Results from the Compliance Operator are reported in the {product-title-short} Compliance Dashboard.
11+
[NOTE]
12+
====
13+
You must install the Compliance Operator on the cluster where Central is installed and on each secured cluster that you want reviewed for compliance.
14+
====
1115

12-
The Compliance Operator automates the review of numerous technical implementations and compares them with certain aspects of industry standards, benchmarks, and baselines.
16+
The Compliance Operator automates the review of numerous technical implementations and compares them with certain aspects of industry standards, benchmarks, and baselines.
1317

1418
The Compliance Operator is not an auditor. To comply or certify to these various standards, you must engage an authorized auditor such as a Qualified Security Assessor (QSA), Joint Authorization Board (JAB), or other industry-recognized regulatory authority to assess your environment.
1519

16-
The Compliance Operator makes recommendations based on generally available information and practices that relate to such standards and can assist with remediation, but actual compliance is your responsibility. You are required to work with an authorized auditor to achieve compliance with a standard.
20+
The Compliance Operator makes recommendations based on generally available information and practices that relate to such standards and can assist with remediation, but actual compliance is your responsibility. You are required to work with an authorized auditor to achieve compliance with a standard.
1721

1822
For the latest updates, see the link:https://access.redhat.com/documentation/en-us/openshift_container_platform/{ocp-latest-version}/html/security_and_compliance/compliance-operator#compliance-operator-release-notes[Compliance Operator release notes].
1923

@@ -33,7 +37,7 @@ include::modules/compliance-operator-install.adoc[leveloffset=+1]
3337
//Configuring the ScanSettingBinding object
3438
include::modules/compliance-operator-configure-scanning.adoc[leveloffset=+1]
3539

36-
// See https://docs.openshift.com/container-platform/4.12/security/compliance_operator/compliance-scans.html#running-compliance-scans_compliance-operator-scans.
40+
// See https://docs.openshift.com/container-platform/4.12/security/compliance_operator/compliance-scans.html#running-compliance-scans_compliance-operator-scans.
3741

3842
[role="_additional-resources"]
3943
.Additional resources

0 commit comments

Comments
 (0)