unified-security-from-install-through-api-governance

Status: IN

OpenShift enforces security as a continuous chain from install-time locks (FIPS, CPU partitioning) through runtime TLS/IPsec enforcement to API-level immutability and webhook admission control — no single layer can be bypassed without affecting the others.

Justifications

depth-3 API governance (stability+immutability) and depth-2 security enforcement (install+runtime+API) together show that security is not layered independently but forms a single enforcement chain where install-time decisions constrain what runtime and API governance must enforce

Depends on (SL): api-governance-enforces-stability-and-immutability, security-enforced-at-install-runtime-and-api-boundary

Depended on by

JSON