# http://deployment-validation-operator-metrics.deployment-validation-operator.svc:8383
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="cluster-admin",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="cluster-admins",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="cluster-storage-operator-role",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="cluster-version-operator",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="csi-snapshot-controller-operator-role",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="default-account-cluster-network-operator",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="default-account-openshift-machine-config-operator",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="storage-version-migration-migrator",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:oauth-apiserver",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:openshift-apiserver",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:openshift-authentication",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:authentication",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:cluster-kube-scheduler-operator",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:etcd-operator",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:kube-apiserver-operator",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:kube-apiserver-recovery",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:kube-controller-manager-operator",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:kube-controller-manager-recovery",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:openshift-config-operator",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:openshift-controller-manager-operator",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:openshift-etcd-installer",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:openshift-kube-apiserver-installer",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:openshift-kube-controller-manager-installer",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:openshift-kube-scheduler-installer",namespace=""} 1
deployment_validation_operator_cluster_admin_role_binding{check_description="CIS Benchmark 5.1.1 Ensure that the cluster-admin role is only used where required",check_remediation="Create and assign a separate role that has access to specific resources/actions needed for the service account.",kind="ClusterRoleBinding",name="system:openshift:operator:service-ca-operator",namespace=""} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="DaemonSet",name="ingress-canary",namespace="openshift-ingress-canary"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="DaemonSet",name="network-check-target",namespace="openshift-network-diagnostics"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Deployment",name="csi-snapshot-webhook",namespace="openshift-cluster-storage-operator"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="etcd-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="etcd-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="etcd-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="kube-apiserver-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="kube-apiserver-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="kube-apiserver-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="kube-controller-manager-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="kube-controller-manager-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="kube-controller-manager-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_default_service_account{check_description="Indicates when pods use the default service account.",check_remediation="Create a dedicated service account for your pod. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-service-account/ for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_drop_net_raw_capability{check_description="Indicates when containers do not drop NET_RAW capability",check_remediation="NET_RAW makes it so that an application within the container is able to craft raw packets, use raw sockets, and bind to any address. Remove this capability in the containers under containers security contexts.",kind="Pod",name="certified-operators-2wzb4",namespace="openshift-marketplace"} 1
deployment_validation_operator_drop_net_raw_capability{check_description="Indicates when containers do not drop NET_RAW capability",check_remediation="NET_RAW makes it so that an application within the container is able to craft raw packets, use raw sockets, and bind to any address. Remove this capability in the containers under containers security contexts.",kind="Pod",name="certified-operators-686g6",namespace="openshift-marketplace"} 1
deployment_validation_operator_drop_net_raw_capability{check_description="Indicates when containers do not drop NET_RAW capability",check_remediation="NET_RAW makes it so that an application within the container is able to craft raw packets, use raw sockets, and bind to any address. Remove this capability in the containers under containers security contexts.",kind="Pod",name="community-operators-crx9l",namespace="openshift-marketplace"} 1
deployment_validation_operator_drop_net_raw_capability{check_description="Indicates when containers do not drop NET_RAW capability",check_remediation="NET_RAW makes it so that an application within the container is able to craft raw packets, use raw sockets, and bind to any address. Remove this capability in the containers under containers security contexts.",kind="Pod",name="community-operators-p2h78",namespace="openshift-marketplace"} 1
deployment_validation_operator_drop_net_raw_capability{check_description="Indicates when containers do not drop NET_RAW capability",check_remediation="NET_RAW makes it so that an application within the container is able to craft raw packets, use raw sockets, and bind to any address. Remove this capability in the containers under containers security contexts.",kind="Pod",name="redhat-marketplace-5k7hw",namespace="openshift-marketplace"} 1
deployment_validation_operator_drop_net_raw_capability{check_description="Indicates when containers do not drop NET_RAW capability",check_remediation="NET_RAW makes it so that an application within the container is able to craft raw packets, use raw sockets, and bind to any address. Remove this capability in the containers under containers security contexts.",kind="Pod",name="redhat-marketplace-npxbd",namespace="openshift-marketplace"} 1
deployment_validation_operator_drop_net_raw_capability{check_description="Indicates when containers do not drop NET_RAW capability",check_remediation="NET_RAW makes it so that an application within the container is able to craft raw packets, use raw sockets, and bind to any address. Remove this capability in the containers under containers security contexts.",kind="Pod",name="redhat-operators-5x4t5",namespace="openshift-marketplace"} 1
deployment_validation_operator_drop_net_raw_capability{check_description="Indicates when containers do not drop NET_RAW capability",check_remediation="NET_RAW makes it so that an application within the container is able to craft raw packets, use raw sockets, and bind to any address. Remove this capability in the containers under containers security contexts.",kind="Pod",name="redhat-operators-zsbxz",namespace="openshift-marketplace"} 1
deployment_validation_operator_env_var_secret{check_description="Indicates when objects use a secret in an environment variable.",check_remediation="Do not use raw secrets in environment variables. Instead, either mount the secret as a file or use a secretKeyRef. Refer to https://kubernetes.io/docs/concepts/configuration/secret/#using-secrets for details.",kind="Deployment",name="image-registry",namespace="openshift-image-registry"} 1
deployment_validation_operator_exposed_services{check_description="Alert on services for forbidden types",check_remediation="Ensure containers are not exposed through a forbidden service type such as NodePort or LoadBalancer.",kind="Service",name="router-default",namespace="openshift-ingress"} 1
deployment_validation_operator_host_ipc{check_description="Alert on pods/deployment-likes with sharing host's IPC namespace",check_remediation="Ensure the host's IPC namespace is not shared.",kind="DaemonSet",name="tuned",namespace="openshift-cluster-node-tuning-operator"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="machine-api-termination-handler",namespace="openshift-machine-api"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="machine-config-daemon",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="machine-config-server",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="multus",namespace="openshift-multus"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="multus-additional-cni-plugins",namespace="openshift-multus"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="node-ca",namespace="openshift-image-registry"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="node-exporter",namespace="openshift-monitoring"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="node-resolver",namespace="openshift-dns"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="sdn",namespace="openshift-sdn"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="sdn-controller",namespace="openshift-sdn"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="DaemonSet",name="tuned",namespace="openshift-cluster-node-tuning-operator"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Deployment",name="aws-ebs-csi-driver-controller",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Deployment",name="cluster-cloud-controller-manager-operator",namespace="openshift-cloud-controller-manager-operator"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Pod",name="etcd-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Pod",name="kube-apiserver-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Pod",name="kube-apiserver-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Pod",name="kube-apiserver-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Pod",name="kube-controller-manager-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Pod",name="kube-controller-manager-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Pod",name="kube-controller-manager-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_host_network{check_description="Alert on pods/deployment-likes with sharing host's network namespace",check_remediation="Ensure the host's network namespace is not shared.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_host_pid{check_description="Alert on pods/deployment-likes with sharing host's process namespace",check_remediation="Ensure the host's process namespace is not shared.",kind="DaemonSet",name="machine-config-daemon",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_host_pid{check_description="Alert on pods/deployment-likes with sharing host's process namespace",check_remediation="Ensure the host's process namespace is not shared.",kind="DaemonSet",name="node-exporter",namespace="openshift-monitoring"} 1
deployment_validation_operator_host_pid{check_description="Alert on pods/deployment-likes with sharing host's process namespace",check_remediation="Ensure the host's process namespace is not shared.",kind="DaemonSet",name="sdn",namespace="openshift-sdn"} 1
deployment_validation_operator_host_pid{check_description="Alert on pods/deployment-likes with sharing host's process namespace",check_remediation="Ensure the host's process namespace is not shared.",kind="DaemonSet",name="tuned",namespace="openshift-cluster-node-tuning-operator"} 1
deployment_validation_operator_latest_tag{check_description="Indicates when a deployment-like object is running a container with an invalid container image",check_remediation="Use a container image with a proper image tag satisfying either the \"AllowList\" & \"BlockList\" regex patterns.",kind="Deployment",name="deployment-validation-operator",namespace="deployment-validation-operator"} 1
deployment_validation_operator_minimum_three_replicas{check_description="Indicates when a deployment uses less than three replicas",check_remediation="Increase be number of replicas in the deployment to at least three to increase the fault tolerancy of the deployment.",kind="Deployment",name="authentication-operator",namespace="openshift-authentication-operator"} 1
deployment_validation_operator_minimum_three_replicas{check_description="Indicates when a deployment uses less than three replicas",check_remediation="Increase be number of replicas in the deployment to at least three to increase the fault tolerancy of the deployment.",kind="Deployment",name="aws-ebs-csi-driver-controller",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_minimum_three_replicas{check_description="Indicates when a deployment uses less than three replicas",check_remediation="Increase be number of replicas in the deployment to at least three to increase the fault tolerancy of the deployment.",kind="Deployment",name="aws-ebs-csi-driver-operator",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_minimum_three_replicas{check_description="Indicates when a deployment uses less than three replicas",check_remediation="Increase be number of replicas in the deployment to at least three to increase the fault tolerancy of the deployment.",kind="Deployment",name="catalog-operator",namespace="openshift-operator-lifecycle-manager"} 1
deployment_validation_operator_minimum_three_replicas{check_description="Indicates when a deployment uses less than three replicas",check_remediation="Increase be number of replicas in the deployment to at least three to increase the fault tolerancy of the deployment.",kind="Deployment",name="service-ca-operator",namespace="openshift-service-ca-operator"} 1
deployment_validation_operator_minimum_three_replicas{check_description="Indicates when a deployment uses less than three replicas",check_remediation="Increase be number of replicas in the deployment to at least three to increase the fault tolerancy of the deployment.",kind="Deployment",name="telemeter-client",namespace="openshift-monitoring"} 1
deployment_validation_operator_minimum_three_replicas{check_description="Indicates when a deployment uses less than three replicas",check_remediation="Increase be number of replicas in the deployment to at least three to increase the fault tolerancy of the deployment.",kind="Deployment",name="thanos-querier",namespace="openshift-monitoring"} 1
deployment_validation_operator_minimum_three_replicas{check_description="Indicates when a deployment uses less than three replicas",check_remediation="Increase be number of replicas in the deployment to at least three to increase the fault tolerancy of the deployment.",kind="StatefulSet",name="prometheus-k8s",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_anti_affinity{check_description="Indicates when deployments with multiple replicas fail to specify inter-pod anti-affinity, to ensure that the orchestrator attempts to schedule replicas on different nodes.",check_remediation="Specify anti-affinity in your pod specification to ensure that the orchestrator attempts to schedule replicas on different nodes. Using podAntiAffinity, specify a labelSelector that matches pods for the deployment, and set the topologyKey to kubernetes.io/hostname. Refer to https://kubernetes.io/docs/concepts/scheduling-eviction/assign-pod-node/#inter-pod-affinity-and-anti-affinity for details.",kind="Deployment",name="deployment-validation-operator",namespace="deployment-validation-operator"} 1
deployment_validation_operator_no_anti_affinity{check_description="Indicates when deployments with multiple replicas fail to specify inter-pod anti-affinity, to ensure that the orchestrator attempts to schedule replicas on different nodes.",check_remediation="Specify anti-affinity in your pod specification to ensure that the orchestrator attempts to schedule replicas on different nodes. Using podAntiAffinity, specify a labelSelector that matches pods for the deployment, and set the topologyKey to kubernetes.io/hostname. Refer to https://kubernetes.io/docs/concepts/scheduling-eviction/assign-pod-node/#inter-pod-affinity-and-anti-affinity for details.",kind="Deployment",name="image-registry",namespace="openshift-image-registry"} 1
deployment_validation_operator_no_anti_affinity{check_description="Indicates when deployments with multiple replicas fail to specify inter-pod anti-affinity, to ensure that the orchestrator attempts to schedule replicas on different nodes.",check_remediation="Specify anti-affinity in your pod specification to ensure that the orchestrator attempts to schedule replicas on different nodes. Using podAntiAffinity, specify a labelSelector that matches pods for the deployment, and set the topologyKey to kubernetes.io/hostname. Refer to https://kubernetes.io/docs/concepts/scheduling-eviction/assign-pod-node/#inter-pod-affinity-and-anti-affinity for details.",kind="Deployment",name="prometheus-adapter",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_anti_affinity{check_description="Indicates when deployments with multiple replicas fail to specify inter-pod anti-affinity, to ensure that the orchestrator attempts to schedule replicas on different nodes.",check_remediation="Specify anti-affinity in your pod specification to ensure that the orchestrator attempts to schedule replicas on different nodes. Using podAntiAffinity, specify a labelSelector that matches pods for the deployment, and set the topologyKey to kubernetes.io/hostname. Refer to https://kubernetes.io/docs/concepts/scheduling-eviction/assign-pod-node/#inter-pod-affinity-and-anti-affinity for details.",kind="StatefulSet",name="alertmanager-main",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_anti_affinity{check_description="Indicates when deployments with multiple replicas fail to specify inter-pod anti-affinity, to ensure that the orchestrator attempts to schedule replicas on different nodes.",check_remediation="Specify anti-affinity in your pod specification to ensure that the orchestrator attempts to schedule replicas on different nodes. Using podAntiAffinity, specify a labelSelector that matches pods for the deployment, and set the topologyKey to kubernetes.io/hostname. Refer to https://kubernetes.io/docs/concepts/scheduling-eviction/assign-pod-node/#inter-pod-affinity-and-anti-affinity for details.",kind="StatefulSet",name="prometheus-k8s",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="CronJob",name="collect-profiles",namespace="openshift-operator-lifecycle-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="CronJob",name="image-pruner",namespace="openshift-image-registry"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="CronJob",name="ip-reconciler",namespace="openshift-multus"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Deployment",name="thanos-querier",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="etcd-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="etcd-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="etcd-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-2-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-3-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-3-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-3-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-4-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-4-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-5-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-5-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-5-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="installer-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="kube-apiserver-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="kube-apiserver-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="kube-apiserver-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="kube-controller-manager-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="kube-controller-manager-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="kube-controller-manager-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="StatefulSet",name="alertmanager-main",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_liveness_probe{check_description="Indicates when containers fail to specify a liveness probe.",check_remediation="Specify a liveness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="StatefulSet",name="prometheus-k8s",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="CronJob",name="collect-profiles",namespace="openshift-operator-lifecycle-manager"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="CronJob",name="image-pruner",namespace="openshift-image-registry"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="CronJob",name="ip-reconciler",namespace="openshift-multus"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="DaemonSet",name="controller-manager",namespace="openshift-controller-manager"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="DaemonSet",name="dns-default",namespace="openshift-dns"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="DaemonSet",name="ingress-canary",namespace="openshift-ingress-canary"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="DaemonSet",name="machine-api-termination-handler",namespace="openshift-machine-api"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="DaemonSet",name="machine-config-daemon",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="DaemonSet",name="machine-config-server",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="DaemonSet",name="multus",namespace="openshift-multus"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="DaemonSet",name="multus-additional-cni-plugins",namespace="openshift-multus"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="Pod",name="revision-pruner-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="Pod",name="revision-pruner-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="Pod",name="revision-pruner-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="StatefulSet",name="alertmanager-main",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_read_only_root_fs{check_description="Indicates when containers are running without a read-only root filesystem.",check_remediation="Set readOnlyRootFilesystem to true in the container securityContext.",kind="StatefulSet",name="prometheus-k8s",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="CronJob",name="collect-profiles",namespace="openshift-operator-lifecycle-manager"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="CronJob",name="image-pruner",namespace="openshift-image-registry"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="CronJob",name="ip-reconciler",namespace="openshift-multus"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="controller-manager",namespace="openshift-controller-manager"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="dns-default",namespace="openshift-dns"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="ingress-canary",namespace="openshift-ingress-canary"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="machine-api-termination-handler",namespace="openshift-machine-api"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="machine-config-daemon",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="machine-config-server",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="multus",namespace="openshift-multus"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="multus-additional-cni-plugins",namespace="openshift-multus"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="multus-admission-controller",namespace="openshift-multus"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="network-metrics-daemon",namespace="openshift-multus"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="node-ca",namespace="openshift-image-registry"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="node-exporter",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="node-resolver",namespace="openshift-dns"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="sdn",namespace="openshift-sdn"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="sdn-controller",namespace="openshift-sdn"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="DaemonSet",name="tuned",namespace="openshift-cluster-node-tuning-operator"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Deployment",name="apiserver",namespace="openshift-apiserver"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Deployment",name="authentication-operator",namespace="openshift-authentication-operator"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Deployment",name="aws-ebs-csi-driver-controller",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Deployment",name="aws-ebs-csi-driver-operator",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Deployment",name="cloud-credential-operator",namespace="openshift-cloud-credential-operator"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Deployment",name="cluster-autoscaler-operator",namespace="openshift-machine-api"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="Pod",name="revision-pruner-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="StatefulSet",name="alertmanager-main",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_readiness_probe{check_description="Indicates when containers fail to specify a readiness probe.",check_remediation="Specify a readiness probe in your container. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/ for details.",kind="StatefulSet",name="prometheus-k8s",namespace="openshift-monitoring"} 1
deployment_validation_operator_no_rolling_update_strategy{check_description="Indicates when a deployment doesn't use a rolling update strategy",check_remediation="Use a rolling update strategy to avoid service disruption during an update. A rolling update strategy allows for pods to be systematicaly replaced in a controlled fashion to ensure no service disruption.",kind="Deployment",name="cloud-credential-operator",namespace="openshift-cloud-credential-operator"} 1
deployment_validation_operator_no_rolling_update_strategy{check_description="Indicates when a deployment doesn't use a rolling update strategy",check_remediation="Use a rolling update strategy to avoid service disruption during an update. A rolling update strategy allows for pods to be systematicaly replaced in a controlled fashion to ensure no service disruption.",kind="Deployment",name="cluster-cloud-controller-manager-operator",namespace="openshift-cloud-controller-manager-operator"} 1
deployment_validation_operator_no_rolling_update_strategy{check_description="Indicates when a deployment doesn't use a rolling update strategy",check_remediation="Use a rolling update strategy to avoid service disruption during an update. A rolling update strategy allows for pods to be systematicaly replaced in a controlled fashion to ensure no service disruption.",kind="Deployment",name="cluster-version-operator",namespace="openshift-cluster-version"} 1
deployment_validation_operator_no_rolling_update_strategy{check_description="Indicates when a deployment doesn't use a rolling update strategy",check_remediation="Use a rolling update strategy to avoid service disruption during an update. A rolling update strategy allows for pods to be systematicaly replaced in a controlled fashion to ensure no service disruption.",kind="Deployment",name="etcd-operator",namespace="openshift-etcd-operator"} 1
deployment_validation_operator_no_rolling_update_strategy{check_description="Indicates when a deployment doesn't use a rolling update strategy",check_remediation="Use a rolling update strategy to avoid service disruption during an update. A rolling update strategy allows for pods to be systematicaly replaced in a controlled fashion to ensure no service disruption.",kind="Deployment",name="openshift-apiserver-operator",namespace="openshift-apiserver-operator"} 1
deployment_validation_operator_no_rolling_update_strategy{check_description="Indicates when a deployment doesn't use a rolling update strategy",check_remediation="Use a rolling update strategy to avoid service disruption during an update. A rolling update strategy allows for pods to be systematicaly replaced in a controlled fashion to ensure no service disruption.",kind="Deployment",name="openshift-config-operator",namespace="openshift-config-operator"} 1
deployment_validation_operator_no_rolling_update_strategy{check_description="Indicates when a deployment doesn't use a rolling update strategy",check_remediation="Use a rolling update strategy to avoid service disruption during an update. A rolling update strategy allows for pods to be systematicaly replaced in a controlled fashion to ensure no service disruption.",kind="Deployment",name="service-ca",namespace="openshift-service-ca"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="DaemonSet",name="machine-config-daemon",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="DaemonSet",name="multus",namespace="openshift-multus"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="DaemonSet",name="multus-additional-cni-plugins",namespace="openshift-multus"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="DaemonSet",name="node-ca",namespace="openshift-image-registry"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="DaemonSet",name="node-resolver",namespace="openshift-dns"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="DaemonSet",name="sdn",namespace="openshift-sdn"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="DaemonSet",name="tuned",namespace="openshift-cluster-node-tuning-operator"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Deployment",name="apiserver",namespace="openshift-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Deployment",name="apiserver",namespace="openshift-oauth-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Deployment",name="etcd-quorum-guard",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="etcd-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="etcd-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="etcd-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-2-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-3-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-3-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-3-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-4-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-4-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-5-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-5-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-5-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="installer-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="kube-apiserver-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="kube-apiserver-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="kube-apiserver-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privilege_escalation_container{check_description="Alert on containers of allowing privilege escalation that could gain more privileges than its parent process.",check_remediation="Ensure containers do not allow privilege escalation by setting allowPrivilegeEscalation=false.\" See https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for more details.",kind="Pod",name="revision-pruner-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="DaemonSet",name="machine-config-daemon",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="DaemonSet",name="multus",namespace="openshift-multus"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="DaemonSet",name="multus-additional-cni-plugins",namespace="openshift-multus"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="DaemonSet",name="node-ca",namespace="openshift-image-registry"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="DaemonSet",name="node-resolver",namespace="openshift-dns"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="DaemonSet",name="sdn",namespace="openshift-sdn"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="DaemonSet",name="tuned",namespace="openshift-cluster-node-tuning-operator"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Deployment",name="apiserver",namespace="openshift-apiserver"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Deployment",name="apiserver",namespace="openshift-oauth-apiserver"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Deployment",name="etcd-quorum-guard",namespace="openshift-etcd"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="etcd-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="etcd-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="etcd-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-2-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-3-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-3-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-3-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-4-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-4-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-5-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-5-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-5-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="revision-pruner-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="revision-pruner-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privileged_container{check_description="Indicates when deployments have containers running in privileged mode.",check_remediation="Do not run your container as privileged unless it is required.",kind="Pod",name="revision-pruner-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_privileged_ports{check_description="Alert on deployments with privileged ports mapped in containers",check_remediation="Ensure privileged ports [0, 1024] are not mapped within containers.",kind="Deployment",name="router-default",namespace="openshift-ingress"} 1
deployment_validation_operator_read_secret_from_env_var{check_description="Indicates when a deployment reads secret from environment variables. CIS Benchmark 5.4.1: \"Prefer using secrets as files over secrets as environment variables. \"",check_remediation="If possible, rewrite application code to read secrets from mounted secret files, rather than from environment variables. Refer to https://kubernetes.io/docs/concepts/configuration/secret/#using-secrets for details.",kind="Deployment",name="aws-ebs-csi-driver-controller",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="CronJob",name="collect-profiles",namespace="openshift-operator-lifecycle-manager"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="CronJob",name="image-pruner",namespace="openshift-image-registry"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="CronJob",name="ip-reconciler",namespace="openshift-multus"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="controller-manager",namespace="openshift-controller-manager"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="dns-default",namespace="openshift-dns"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="ingress-canary",namespace="openshift-ingress-canary"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="machine-api-termination-handler",namespace="openshift-machine-api"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="machine-config-daemon",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="machine-config-server",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="multus",namespace="openshift-multus"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="multus-additional-cni-plugins",namespace="openshift-multus"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="multus-admission-controller",namespace="openshift-multus"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="network-check-target",namespace="openshift-network-diagnostics"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="network-metrics-daemon",namespace="openshift-multus"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="node-ca",namespace="openshift-image-registry"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="node-exporter",namespace="openshift-monitoring"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="node-resolver",namespace="openshift-dns"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="sdn",namespace="openshift-sdn"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="sdn-controller",namespace="openshift-sdn"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="DaemonSet",name="tuned",namespace="openshift-cluster-node-tuning-operator"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="Deployment",name="apiserver",namespace="openshift-apiserver"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="Deployment",name="apiserver",namespace="openshift-oauth-apiserver"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="Pod",name="revision-pruner-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="Pod",name="revision-pruner-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="Pod",name="revision-pruner-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="StatefulSet",name="alertmanager-main",namespace="openshift-monitoring"} 1
deployment_validation_operator_required_annotation_email{check_description="Indicates when objects do not have an email annotation with a valid email address.",check_remediation="Add an email annotation to your object with the email address of the object's owner.",kind="StatefulSet",name="prometheus-k8s",namespace="openshift-monitoring"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="CronJob",name="collect-profiles",namespace="openshift-operator-lifecycle-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="CronJob",name="image-pruner",namespace="openshift-image-registry"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="CronJob",name="ip-reconciler",namespace="openshift-multus"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="controller-manager",namespace="openshift-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="dns-default",namespace="openshift-dns"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="ingress-canary",namespace="openshift-ingress-canary"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="machine-api-termination-handler",namespace="openshift-machine-api"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="machine-config-daemon",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="machine-config-server",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="multus",namespace="openshift-multus"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="multus-additional-cni-plugins",namespace="openshift-multus"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="multus-admission-controller",namespace="openshift-multus"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="network-check-target",namespace="openshift-network-diagnostics"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="network-metrics-daemon",namespace="openshift-multus"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="node-ca",namespace="openshift-image-registry"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="node-exporter",namespace="openshift-monitoring"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="node-resolver",namespace="openshift-dns"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="sdn",namespace="openshift-sdn"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="sdn-controller",namespace="openshift-sdn"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="DaemonSet",name="tuned",namespace="openshift-cluster-node-tuning-operator"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Deployment",name="apiserver",namespace="openshift-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Deployment",name="apiserver",namespace="openshift-oauth-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Deployment",name="authentication-operator",namespace="openshift-authentication-operator"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Deployment",name="aws-ebs-csi-driver-controller",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Deployment",name="aws-ebs-csi-driver-operator",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Deployment",name="catalog-operator",namespace="openshift-operator-lifecycle-manager"} 1
deployment_validation_oyperator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="community-operators-p2h78",namespace="openshift-marketplace"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="etcd-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="etcd-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="etcd-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-2-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-3-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-3-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-3-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-4-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-4-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-4-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-4-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-5-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-5-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-5-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-5-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="installer-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="kube-apiserver-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="kube-apiserver-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="kube-apiserver-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="kube-controller-manager-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="kube-controller-manager-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="kube-controller-manager-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="redhat-marketplace-5k7hw",namespace="openshift-marketplace"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="redhat-marketplace-npxbd",namespace="openshift-marketplace"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="redhat-operators-5x4t5",namespace="openshift-marketplace"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="redhat-operators-zsbxz",namespace="openshift-marketplace"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-6-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="Pod",name="revision-pruner-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="StatefulSet",name="alertmanager-main",namespace="openshift-monitoring"} 1
deployment_validation_operator_required_label_owner{check_description="Indicates when objects do not have an email annotation with an owner label.",check_remediation="Add an email annotation to your object with the name of the object's owner.",kind="StatefulSet",name="prometheus-k8s",namespace="openshift-monitoring"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="authentication-operator",namespace="openshift-authentication-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="aws-ebs-csi-driver-controller",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="aws-ebs-csi-driver-operator",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="catalog-operator",namespace="openshift-operator-lifecycle-manager"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="cloud-credential-operator",namespace="openshift-cloud-credential-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="cluster-autoscaler-operator",namespace="openshift-machine-api"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="cluster-baremetal-operator",namespace="openshift-machine-api"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="cluster-capi-operator",namespace="openshift-cluster-api"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="cluster-cloud-controller-manager-operator",namespace="openshift-cloud-controller-manager-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="cluster-image-registry-operator",namespace="openshift-image-registry"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="cluster-monitoring-operator",namespace="openshift-monitoring"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="cluster-node-tuning-operator",namespace="openshift-cluster-node-tuning-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="cluster-samples-operator",namespace="openshift-cluster-samples-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="cluster-storage-operator",namespace="openshift-cluster-storage-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="cluster-version-operator",namespace="openshift-cluster-version"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="console",namespace="openshift-console"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="console-operator",namespace="openshift-console-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="csi-snapshot-controller",namespace="openshift-cluster-storage-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="csi-snapshot-controller-operator",namespace="openshift-cluster-storage-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="csi-snapshot-webhook",namespace="openshift-cluster-storage-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="dns-operator",namespace="openshift-dns-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="downloads",namespace="openshift-console"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="etcd-operator",namespace="openshift-etcd-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="grafana",namespace="openshift-monitoring"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="image-registry",namespace="openshift-image-registry"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="ingress-operator",namespace="openshift-ingress-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="insights-operator",namespace="openshift-insights"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="kube-apiserver-operator",namespace="openshift-kube-apiserver-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="kube-controller-manager-operator",namespace="openshift-kube-controller-manager-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="kube-state-metrics",namespace="openshift-monitoring"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="kube-storage-version-migrator-operator",namespace="openshift-kube-storage-version-migrator-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="machine-api-controllers",namespace="openshift-machine-api"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="machine-api-operator",namespace="openshift-machine-api"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="machine-approver",namespace="openshift-cluster-machine-approver"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="machine-config-controller",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="machine-config-operator",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="marketplace-operator",namespace="openshift-marketplace"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="service-ca",namespace="openshift-service-ca"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="service-ca-operator",namespace="openshift-service-ca-operator"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="telemeter-client",namespace="openshift-monitoring"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="Deployment",name="thanos-querier",namespace="openshift-monitoring"} 1
deployment_validation_operator_required_minimum_replicas{check_description="Indicates when deployments use less that the minimum recommended number of replicas",check_remediation="Increase be number of replicas in the deployment to at least the minimum to increase the fault tolerancy of the deployment.",kind="StatefulSet",name="prometheus-k8s",namespace="openshift-monitoring"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="CronJob",name="collect-profiles",namespace="openshift-operator-lifecycle-manager"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="CronJob",name="image-pruner",namespace="openshift-image-registry"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="CronJob",name="ip-reconciler",namespace="openshift-multus"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="DaemonSet",name="controller-manager",namespace="openshift-controller-manager"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="DaemonSet",name="dns-default",namespace="openshift-dns"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="DaemonSet",name="ingress-canary",namespace="openshift-ingress-canary"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="DaemonSet",name="machine-api-termination-handler",namespace="openshift-machine-api"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="Pod",name="revision-pruner-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="Pod",name="revision-pruner-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_run_as_non_root{check_description="Indicates when containers are not set to runAsNonRoot.",check_remediation="Set runAsUser to a non-zero number and runAsNonRoot to true in your pod or container securityContext. Refer to https://kubernetes.io/docs/tasks/configure-pod-container/security-context/ for details.",kind="Pod",name="revision-pruner-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_sensitive_host_mounts{check_description="Alert on deployments with sensitive host system directories mounted in containers",check_remediation="Ensure sensitive host system directories are not mounted in containers by removing those Volumes and VolumeMounts.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_sensitive_host_mounts{check_description="Alert on deployments with sensitive host system directories mounted in containers",check_remediation="Ensure sensitive host system directories are not mounted in containers by removing those Volumes and VolumeMounts.",kind="DaemonSet",name="machine-config-daemon",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_sensitive_host_mounts{check_description="Alert on deployments with sensitive host system directories mounted in containers",check_remediation="Ensure sensitive host system directories are not mounted in containers by removing those Volumes and VolumeMounts.",kind="DaemonSet",name="node-exporter",namespace="openshift-monitoring"} 1
deployment_validation_operator_sensitive_host_mounts{check_description="Alert on deployments with sensitive host system directories mounted in containers",check_remediation="Ensure sensitive host system directories are not mounted in containers by removing those Volumes and VolumeMounts.",kind="DaemonSet",name="sdn",namespace="openshift-sdn"} 1
deployment_validation_operator_sensitive_host_mounts{check_description="Alert on deployments with sensitive host system directories mounted in containers",check_remediation="Ensure sensitive host system directories are not mounted in containers by removing those Volumes and VolumeMounts.",kind="DaemonSet",name="tuned",namespace="openshift-cluster-node-tuning-operator"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="CronJob",name="collect-profiles",namespace="openshift-operator-lifecycle-manager"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="CronJob",name="image-pruner",namespace="openshift-image-registry"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="CronJob",name="ip-reconciler",namespace="openshift-multus"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="controller-manager",namespace="openshift-controller-manager"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="dns-default",namespace="openshift-dns"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="ingress-canary",namespace="openshift-ingress-canary"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="machine-api-termination-handler",namespace="openshift-machine-api"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="machine-config-daemon",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="machine-config-server",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_unset_cpyu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="kube-controller-manager-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="kube-controller-manager-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="kube-controller-manager-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="redhat-marketplace-5k7hw",namespace="openshift-marketplace"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="redhat-marketplace-npxbd",namespace="openshift-marketplace"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="redhat-operators-5x4t5",namespace="openshift-marketplace"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="redhat-operators-zsbxz",namespace="openshift-marketplace"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="StatefulSet",name="alertmanager-main",namespace="openshift-monitoring"} 1
deployment_validation_operator_unset_cpu_requirements{check_description="Indicates when containers do not have CPU requests and limits set.",check_remediation="Set CPU requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="StatefulSet",name="prometheus-k8s",namespace="openshift-monitoring"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="CronJob",name="collect-profiles",namespace="openshift-operator-lifecycle-manager"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="CronJob",name="image-pruner",namespace="openshift-image-registry"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="CronJob",name="ip-reconciler",namespace="openshift-multus"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="controller-manager",namespace="openshift-controller-manager"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="dns-default",namespace="openshift-dns"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="ingress-canary",namespace="openshift-ingress-canary"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="DaemonSet",name="machine-api-termination-handler",namespace="openshift-machine-api"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="openshift-kube-scheduler-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="redhat-marketplace-5k7hw",namespace="openshift-marketplace"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="redhat-marketplace-npxbd",namespace="openshift-marketplace"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="redhat-operators-5x4t5",namespace="openshift-marketplace"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="Pod",name="redhat-operators-zsbxz",namespace="openshift-marketplace"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="StatefulSet",name="alertmanager-main",namespace="openshift-monitoring"} 1
deployment_validation_operator_unset_memory_requirements{check_description="Indicates when containers do not have memory requests and limits set.",check_remediation="Set memory requests and limits for your container based on its requirements. Refer to https://kubernetes.io/docs/concepts/configuration/manage-resources-containers/#requests-and-limits for details.",kind="StatefulSet",name="prometheus-k8s",namespace="openshift-monitoring"} 1
deployment_validation_operator_use_namespace{check_description="Indicates when a resource is deployed to the default namespace.   CIS Benchmark 5.7.1: Create administrative boundaries between resources using namespaces. CIS Benchmark 5.7.4: The default namespace should not be used.",check_remediation="Create namespaces for objects in your deployment.",kind="Service",name="kubernetes",namespace="default"} 1
deployment_validation_operator_use_namespace{check_description="Indicates when a resource is deployed to the default namespace.   CIS Benchmark 5.7.1: Create administrative boundaries between resources using namespaces. CIS Benchmark 5.7.4: The default namespace should not be used.",check_remediation="Create namespaces for objects in your deployment.",kind="Service",name="openshift",namespace="default"} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="ClusterRole",name="admin",namespace=""} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="ClusterRole",name="aws-ebs-csi-driver-operator-clusterrole",namespace=""} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="ClusterRole",name="cloud-controller-manager",namespace=""} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="ClusterRole",name="cloud-credential-operator-role",namespace=""} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="ClusterRole",name="cluster-admin",namespace=""} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="ClusterRole",name="cluster-autoscaler-operator",namespace=""} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="ClusterRole",name="cluster-autoscaler-operator:cluster-reader",namespace=""} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="ClusterRole",name="cluster-capi-operator",namespace=""} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="Role",name="dns-operator",namespace="openshift-dns-operator"} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="Role",name="ingress-operator",namespace="openshift-ingress-operator"} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="Role",name="machine-api-controllers",namespace="openshift-machine-api"} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="Role",name="machine-api-operator",namespace="openshift-machine-api"} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="Role",name="user-workload-monitoring-config-edit",namespace="openshift-user-workload-monitoring"} 1
deployment_validation_operator_wildcard_in_rules{check_description="Indicate when a wildcard is used in Role or ClusterRole rules. CIS Benchmark 5.1.3 Use of wildcards is not optimal from a security perspective as it may allow for inadvertent access to be granted when new resources are added to the Kubernetes API either as CRDs or in later versions of the product.",check_remediation="Where possible replace any use of wildcards in clusterroles and roles with specific objects or actions.",kind="Role",name="whereabouts-cni",namespace="openshift-multus"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="CronJob",name="ip-reconciler",namespace="openshift-multus"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="DaemonSet",name="aws-ebs-csi-driver-node",namespace="openshift-cluster-csi-drivers"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="DaemonSet",name="machine-config-daemon",namespace="openshift-machine-config-operator"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="DaemonSet",name="multus",namespace="openshift-multus"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="DaemonSet",name="node-ca",namespace="openshift-image-registry"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="DaemonSet",name="node-resolver",namespace="openshift-dns"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="DaemonSet",name="sdn",namespace="openshift-sdn"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="DaemonSet",name="tuned",namespace="openshift-cluster-node-tuning-operator"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Deployment",name="apiserver",namespace="openshift-apiserver"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-6-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-etcd"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-6-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-7-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-7-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-apiserver"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-7-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-scheduler"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-8-ip-10-0-135-107.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-8-ip-10-0-191-126.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
deployment_validation_operator_writable_host_mount{check_description="Indicates when containers mount a host path as writable.",check_remediation="Set containers to mount host paths as readOnly, if you need to access files on the host.",kind="Pod",name="revision-pruner-8-ip-10-0-220-203.us-east-2.compute.internal",namespace="openshift-kube-controller-manager"} 1
