11. CIRV-SDV: Security Validation¶
Kali Release: Openstack security checking, as described here: https://docs.openstack.org/security-guide/checklist.html is implemented.
This version supports following deployments:
Triple-O (RHOSP - openstack services run as containers)
Openstack on Kubernetes (Ex: Airship)
Legacy - Devstack (openstack sevices baremetal applications)
11.1. Running the container¶
run command docker build -t sdv-security . Things to note before building
Correct deployment type
Corresponding access information.
Comment out the last line if the container is run interactively.
First first two can be done by adding it in security.conf, or passing them as environment variables.
11.2. Running the container¶
It is recommended to run interactively, using the following steps
docker run -it sdv-security /bin/bash
./os-checklist