Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)
لغة النص الأصلي: الإنجليزية
القائمة
Skills في هذا المستودع
جمع SkillsMP عدد ٧٬٤٤٢ من skills من CyberStrikeus/CyberStrike. افتح أي skill لمراجعة مصدره وتفاصيله.
CyberStrikeus/CyberStrikeعرض ٤٠ من أصل ٧٬٤٤٢ skills مجمعة.
Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --authorization-mode argument includes Node (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --authorization-mode argument includes RBAC (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the admission control plugin EventRateLimit is set (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that the --terminated-pod-gc-threshold argument is set as appropriate (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that the --profiling argument is set to false (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --use-service-account-credentials argument is set to true (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --service-account-private-key-file argument is set as appropriate (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --root-ca-file argument is set as appropriate (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --bind-address argument is set to 127.0.0.1 (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --profiling argument is set to false (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --bind-address argument is set to 127.0.0.1 (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --cert-file and --key-file arguments are set as appropriate (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --cert-file and --key-file arguments are set as appropriate (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --client-cert-auth argument is set to true (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --auto-tls argument is not set to true (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --peer-cert-file and --peer-key-file arguments are set as appropriate (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --peer-client-cert-auth argument is set to true (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --peer-auto-tls argument is not set to true (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that a unique Certificate Authority is used for etcd (Manual)
لغة النص الأصلي: الإنجليزية
Client certificate authentication should not be used for users (Manual)
لغة النص الأصلي: الإنجليزية
Service account token authentication should not be used for users (Manual)
لغة النص الأصلي: الإنجليزية
Bootstrap token authentication should not be used for users (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that a minimal audit policy is created (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that the audit policy covers key security concerns (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that the kubelet service file permissions are set to 600 or more restrictive (Automated)
لغة النص الأصلي: الإنجليزية
If the kubelet config.yaml configuration file is being used validate file ownership is set to root:root (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the kubelet service file ownership is set to root:root (Automated)
لغة النص الأصلي: الإنجليزية
If proxy kubeconfig file exists ensure permissions are set to 600 or more restrictive (Manual)
لغة النص الأصلي: الإنجليزية
If proxy kubeconfig file exists ensure ownership is set to root:root (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that the --kubeconfig kubelet.conf file permissions are set to 600 or more restrictive (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --kubeconfig kubelet.conf file ownership is set to root:root (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the certificate authorities file permissions are set to 600 or more restrictive (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that the client certificate authorities file ownership is set to root:root (Manual)
لغة النص الأصلي: الإنجليزية
If the kubelet config.yaml configuration file is being used validate permissions set to 600 or more restrictive (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --anonymous-auth argument is set to false (Automated)
لغة النص الأصلي: الإنجليزية
Ensure that the --rotate-certificates argument is not set to false (Automated)
لغة النص الأصلي: الإنجليزية
Verify that the RotateKubeletServerCertificate argument is set to true (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that the Kubelet only makes use of Strong Cryptographic Ciphers (Manual)
لغة النص الأصلي: الإنجليزية