Kaspersky Container Security

Risk acceptance

You can accept the risks found by the solution taking into account the following:

  • In case of vulnerabilities, configuration errors, and sensitive data, you can accept risks with all severity levels.
  • In case of malware, you can accept risks only with the Medium, Low, and Negligible severity levels.

    You cannot accept risks with the High and Critical severity levels.

To accept the risk:

  1. In the image scanning results window, open the tab with information about the required type of detected threats.
  2. In the table, select a threat and click Accept or Accept risk in the action menu (depending on selected tab) to start risk acceptance.
  3. In the window that opens, specify the risk acceptance parameters:
    • Select the extent of risk acceptance:
      • For the selected image with the detected risk;
      • For all images in the repository containing the image with the detected security threat;
      • For all images in which this security threat has been or will be detected.
    • If required, specify the period after which this security threat must be considered again when determining image security status.
    • Specify the reason for risk acceptance.
  4. Click the Accept button.

The selected threat does not affect the security status of this specific image, images in the repository, or all images for the defined number of days (or for an unlimited term).

An accepted risk can be viewed in the PoliciesRisk acceptance section.