diff --git a/modules/compliance-supported-profiles.adoc b/modules/compliance-supported-profiles.adoc index fa66132d26..afd13c3255 100644 --- a/modules/compliance-supported-profiles.adoc +++ b/modules/compliance-supported-profiles.adoc @@ -86,13 +86,15 @@ The Compliance Operator provides the following compliance profiles: |0.1.47+ |link:https://www.pcisecuritystandards.org/document_library?document=pci_dss[PCI Security Standards ® Council Document Library] |`x86_64` + `ppc64le` |ocp4-pci-dss-node |PCI-DSS v3.2.1 Control Baseline for Red Hat OpenShift Container Platform 4 |0.1.47+ |link:https://www.pcisecuritystandards.org/document_library?document=pci_dss[PCI Security Standards ® Council Document Library] |`x86_64` - + `ppc64le` + |ocp4-high |NIST 800-53 High-Impact Baseline for Red Hat OpenShift - Platform level |0.1.52+ diff --git a/security/compliance_operator/compliance-operator-release-notes.adoc b/security/compliance_operator/compliance-operator-release-notes.adoc index 9392202799..d560f3b22e 100644 --- a/security/compliance_operator/compliance-operator-release-notes.adoc +++ b/security/compliance_operator/compliance-operator-release-notes.adoc @@ -13,6 +13,28 @@ These release notes track the development of the Compliance Operator in the {pro For an overview of the Compliance Operator, see xref:../../security/compliance_operator/compliance-operator-understanding.adoc#understanding-compliance-operator[Understanding the Compliance Operator]. +[id="compliance-operator-release-notes-0-1-59"] +== OpenShift Compliance Operator 0.1.59 + +The following advisory is available for the OpenShift Compliance Operator 0.1.59: + +* link:https://access.redhat.com/errata/RHBA-2022:8538[RHBA-2022:8538 - OpenShift Compliance Operator bug fix update] + + +[id="compliance-operator-0-1-59-new-features-and-enhancements"] +=== New features and enhancements + +The Compliance Operator now supports Payment Card Industry Data Security Standard (PCI-DSS) `ocp4-pci-dss` and `ocp4-pci-dss-node` profiles on the `ppc64le` architecture. + +[id="compliance-operator-0-1-59-bug-fixes"] +=== Bug fixes + +* Previously, the Compliance Operator did not support the Payment Card Industry Data Security Standard (PCI DSS) `ocp4-pci-dss` and `ocp4-pci-dss-node` profiles on different architectures such as `ppc64le`. Now, the Compliance Operator supports `ocp4-pci-dss` and `ocp4-pci-dss-node` profiles on the `ppc64le` architecture. (link:https://issues.redhat.com/browse/OCPBUGS-3252[*OCPBUGS-3252*]) + +* Previously, after the recent upgrade to version 0.1.57, the `rerunner` service account (SA) was no longer owned by the cluster service version (CSV), which caused the SA to be removed during the operator upgrade. Now, the CSV owns the `rerunner` SA in 0.1.59, and upgrades from any previous version will not result in a missing SA. (link:https://issues.redhat.com/browse/OCPBUGS-3452[*OCPBUGS-3452*]) + +* In 0.1.57, the operator started the controller metrics endpoint listening on port `8080`. This resulted in `TargetDown` alerts since cluster monitoring expected port is `8383`. With 0.1.59, the operator starts the endpoint listening on port `8383` as expected. (link:https://issues.redhat.com/browse/OCPBUGS-3097[*OCPBUGS-3097*]) + [id="compliance-operator-release-notes-0-1-57"] == OpenShift Compliance Operator 0.1.57