diff --git a/applications/openshift/scc/scc_limit_container_allowed_capabilities/rule.yml b/applications/openshift/scc/scc_limit_container_allowed_capabilities/rule.yml index 8e2b3bd54bb..99ad040e99e 100644 --- a/applications/openshift/scc/scc_limit_container_allowed_capabilities/rule.yml +++ b/applications/openshift/scc/scc_limit_container_allowed_capabilities/rule.yml @@ -66,7 +66,7 @@ ocil: |- check the variable value, e.g:
$ oc get variable ocp4-var-sccs-with-allowed-capabilities-regex -ojsonpath='{.value}'Then use following command to list the SCCs that would fail the test: -
$ oc get scc -o json | {{{ jqfilter }}}+
$ oc get scc -o json | jq {{{ jqfilter }}}Please replace the regular expression in the test command with the value read from the variable
ocp4-var-sccs-with-allowed-capabilities-regex. You can read the variable value with: