diff --git a/02-validation/01-resource-validation/require-resource-limits.yaml b/02-validation/01-resource-validation/1. require-resource-limits.yaml similarity index 100% rename from 02-validation/01-resource-validation/require-resource-limits.yaml rename to 02-validation/01-resource-validation/1. require-resource-limits.yaml diff --git a/02-validation/01-resource-validation/require-min-replicas-production.yaml b/02-validation/01-resource-validation/2. require-min-replicas-production.yaml similarity index 100% rename from 02-validation/01-resource-validation/require-min-replicas-production.yaml rename to 02-validation/01-resource-validation/2. require-min-replicas-production.yaml diff --git a/02-validation/01-resource-validation/disallow-latest-tag.yaml b/02-validation/01-resource-validation/3. disallow-latest-tag.yaml similarity index 100% rename from 02-validation/01-resource-validation/disallow-latest-tag.yaml rename to 02-validation/01-resource-validation/3. disallow-latest-tag.yaml diff --git a/02-validation/01-resource-validation/allow-only-trusted-registries.yaml b/02-validation/01-resource-validation/4. allow-only-trusted-registries.yaml similarity index 100% rename from 02-validation/01-resource-validation/allow-only-trusted-registries.yaml rename to 02-validation/01-resource-validation/4. allow-only-trusted-registries.yaml diff --git a/02-validation/01-resource-validation/require-labels.yaml b/02-validation/01-resource-validation/5. require-labels.yaml similarity index 100% rename from 02-validation/01-resource-validation/require-labels.yaml rename to 02-validation/01-resource-validation/5. require-labels.yaml diff --git a/02-validation/03-reporting/README.md b/02-validation/03-reporting/README.md index 0cbe4ad..1efc322 100644 --- a/02-validation/03-reporting/README.md +++ b/02-validation/03-reporting/README.md @@ -9,6 +9,28 @@ ## Работа с PolicyReport +### Пример записи policy report + +```yaml +apiVersion: wgpolicyk8s.io/v1alpha2 +kind: PolicyReport +metadata: + name: polr-ns-default + namespace: default +results: +- message: "Контейнер 'nginx' должен иметь resource limits" + policy: require-resource-limits + result: fail + rule: check-container-limits + scored: true + severity: high + resources: + - apiVersion: v1 + kind: Pod + name: my-app + namespace: default +``` + ```bash # Посмотреть все отчёты kubectl get policyreports -A