29.2.24
2.28.0: GitHub Registry, reduce URLs for Image Assurance
Type: New Feature + improvements
Description:
Image Assurance 2.29.0:
Release Github Container Registry Scanning support
Reduced the number of URLs that need to be accessed by the agents (relevant for Scan Engine Version 2.0.0 only). CloudGuard agents must have connectivity to these region-specific URLs:
Region | URLs accessed by Image Assurance agent |
---|---|
United States (US) | |
Europe (EU) | |
Australia (AU) | |
Canada (CA) | |
India (IN) | |
Singapore (SG) |
Security enhancements - all agents:
Image Assurance 2.29.0
Admission Control: Enforcer 2.11.0 & Policy 1.8.0
Inventory 1.14.0
Flow-logs 0.14.0
Runtime Policy 1.8.0
Affected Components: CloudGuard Workload Protection agents
15.1.23
Workload Protection for Kubernetes:
...
◦ Rename "Image Assurance - Image Scan only" to "Vulnerability Scanning"
3.12.23
Workload Protection for Kubernetes: helm 2.25.0
Description:
Image Assurance 2.27.0
Fix “Internal error” image scan errors: on nodes with containerd Container runtime configured to discard compressed image layers once they were unpacked. Affects GKE 1.27+ and all EKS with AMIs released after July 28 2023
Admission Control Enforcer 2.10.0
Fix escaping in GSL if regular expression defined.
...
19.11.23
Workload Protection for Kubernetes: helm 2.24.3
...