Advanced Cluster Security (ACS)
Red Hat Advanced Cluster Security helps you improve policy and industry compliance across the lifecycle of your application.
Last updated on
What is Advanced Cluster Security
ACS helps you enforce DevOps and security best practices in your application. This service can be used to monitor clusters, components and individual nodes on OpenShift.
Benefits
ACS can help you protect your applications, and address concerns early in the development lifecycle.
Increase visibility
ACS delivers a comprehensive view of your application, including images, pods and configurations. To help you assess the compliance of your deployments, you can use dashboards to capture and display scan results from your application.
Identify risks
ACS identifies and ranks security risks in your deployments, so you can prioritize and address vulnerabilities. You can also track the actions your team has taken to address security concerns and improvements you’ve made to the security of your application.
Facilitate integrations
Easily integrate ACS with other platform tools and processes, including CI/CD pipelines and image repositories. Scanning functions can be implemented across the entire software development lifecycle, giving you real-time updates when and where you need them.
Who can use it
This service is installed in Silver and Gold hosting tiers and is available to all product teams.
When to use it
You don’t need to take any action to have your application scanned.
ACS periodically scans all active images (images you have deployed in your environment) on the platform and updates the image scan results to reflect the latest vulnerability definitions.
You can also configure ACS to scan inactive (not deployed) images automatically by specifying an Image Watch.
Where to get support
Rocket.Chat is the main communication channel for platform service support.
- For best practices, configuration and troubleshooting questions, use the #devops-acs channel
- For urgent support, contact us on the #devops-sos channel
- For cluster-wide service notifications that may impact RedHat ACS availability, check the #devops-alerts channel
For additional assistance, you can visit the platform support page.
Product information
Go to the product information for RedHat Advanced Cluster Security.
Security reviews
Privacy Impact Assessment (PIA) and Security Threat Risk Assessment (STRA) have been completed for RedHat Advanced Cluster Security. Send a request to PlatformServicesTeam@gov.bc.ca to access these assessments.