mirror of
https://github.com/falcosecurity/falco.git
synced 2025-10-21 19:44:57 +00:00
Add tests that verify that this falco is backwards compatible with the v4 k8s audit rules file. It includes tests for: - checking images by repository/image: ka.req.container.image/ka.req.container.image.repository - checking privileged status of any container in a pod: ka.req.container.privileged - checking host_network: ka.req.container.host_network The tests were copied from the v5 versions of the tests, when necessary adding back v4-compatible versions of macros like allowed_k8s_containers. Signed-off-by: Mark Stemm <mark.stemm@gmail.com>