audit2rbac icon indicating copy to clipboard operation
audit2rbac copied to clipboard

Detect permissions checked against the target user via a subject access review

Open liggitt opened this issue 6 years ago • 0 comments

Needed to include synthetic resource permissions checked for by various admission plugins or kubelets

Requires audit log to capture content for SAR

Might need to special case PSP checks (or have a way to include/exclude SAR checks for specific resources)

liggitt avatar Sep 12 '17 23:09 liggitt