-
Improvement
-
Resolution: Fixed
-
Minor
-
None
Kubernetes credentials plugin is not FIPS compliant.
It allows skipping TLS verify which should not be allowed in a FIPS 140-2 environment.
It can also expose credentials through non TLS connection, which should not be allowed in a FIPS 140-2 environment.
- causes
-
JENKINS-73610 FIPS compliance checks fail when serverUrl isn't defined (not mandatory for kubeconfig)
-
- Closed
-
- links to
[JENKINS-73525] Plugin is not FIPS compliant
Status | Original: Open [ 1 ] | New: In Progress [ 3 ] |
Status | Original: In Progress [ 3 ] | New: In Review [ 10005 ] |
Remote Link | New: This issue links to "Pull request (Web Link)" [ 29835 ] |
Link |
New:
This issue is blocked by |
Link |
Original:
This issue is blocked by |
Link |
New:
This issue causes |
Resolution | New: Fixed [ 1 ] | |
Status | Original: In Review [ 10005 ] | New: Closed [ 6 ] |
This change appears to have introduced a bug that I've just raised on https://issues.jenkins.io/browse/JENKINS-73610