Minimize access to create pods (Manual)
لغة النص الأصلي: الإنجليزية
القائمة
Skills في هذا المستودع
جمع SkillsMP عدد ٧٬٤٤٢ من skills من CyberStrikeus/CyberStrike. افتح أي skill لمراجعة مصدره وتفاصيله.
CyberStrikeus/CyberStrikeعرض ٤٠ من أصل ٧٬٤٤٢ skills مجمعة.
Minimize access to create pods (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that default service accounts are not actively used (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that Service Account Tokens are only mounted where necessary (Manual)
لغة النص الأصلي: الإنجليزية
Minimize the admission of privileged containers (Manual)
لغة النص الأصلي: الإنجليزية
Minimize access to privileged Security Context Constraints (Manual)
لغة النص الأصلي: الإنجليزية
Minimize the admission of containers wishing to share the host process ID namespace (Manual)
لغة النص الأصلي: الإنجليزية
Minimize the admission of containers wishing to share the host IPC namespace (Manual)
لغة النص الأصلي: الإنجليزية
Minimize the admission of containers wishing to share the host network namespace (Manual)
لغة النص الأصلي: الإنجليزية
Minimize the admission of containers with allowPrivilegeEscalation (Manual)
لغة النص الأصلي: الإنجليزية
Minimize the admission of root containers (Manual)
لغة النص الأصلي: الإنجليزية
Minimize the admission of containers with the NET_RAW capability (Manual)
لغة النص الأصلي: الإنجليزية
Minimize the admission of containers with added capabilities (Manual)
لغة النص الأصلي: الإنجليزية
Minimize the admission of containers with capabilities assigned (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that the CNI in use supports Network Policies (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that all Namespaces have Network Policies defined (Manual)
لغة النص الأصلي: الإنجليزية
Prefer using secrets as files over secrets as environment variables (Manual)
لغة النص الأصلي: الإنجليزية
Consider external secret storage (Manual)
لغة النص الأصلي: الإنجليزية
Configure Image Provenance using image controller configuration parameters (Manual)
لغة النص الأصلي: الإنجليزية
Create administrative boundaries between resources using namespaces (Manual)
لغة النص الأصلي: الإنجليزية
Ensure that the seccomp profile is set to docker/default in your pod definitions (Manual)
لغة النص الأصلي: الإنجليزية
Apply Security Context to Your Pods and Containers (Manual)
لغة النص الأصلي: الإنجليزية
The default namespace should not be used (Manual)
لغة النص الأصلي: الإنجليزية
Restrict GPU and USB pass through to approved devices (Manual)
لغة النص الأصلي: الإنجليزية
Restrict namespace administrator access to migration tools (Manual)
لغة النص الأصلي: الإنجليزية
Restrict exec access to the pods (Manual)
لغة النص الأصلي: الإنجليزية
Restrict VNC access to cluster workloads (Manual)
لغة النص الأصلي: الإنجليزية
Restrict access to create and modify the Virtual Machine Cluster Instance and Preference Types (Manual)
لغة النص الأصلي: الإنجليزية
Restrict update access to the CDI CR (Manual)
لغة النص الأصلي: الإنجليزية
Enable nonRoot feature gate in OCPvirt prior to 4.18 (Automated)
لغة النص الأصلي: الإنجليزية
Disable persistentReservations feature gate (Automated)
لغة النص الأصلي: الإنجليزية
Disable downwardMetrics feature gate (Automated)
لغة النص الأصلي: الإنجليزية
Enforce the use of trusted registries using TLS (Automated)
لغة النص الأصلي: الإنجليزية
Restrict patching operations in the annotations for Hyperconverged (Manual)
لغة النص الأصلي: الإنجليزية
Ensure KSM is disabled (Automated)
لغة النص الأصلي: الإنجليزية
Ensure kubevirt seccomp profile file permission is set to 700 or more restrictive (Automated)
لغة النص الأصلي: الإنجليزية
Ensure kubevirt cache directory permission is set to 755 or more restrictive (Automated)
لغة النص الأصلي: الإنجليزية
Restrict pass through of GPUs and Host devices to the Virtual Machine (Manual)
لغة النص الأصلي: الإنجليزية
Disable overcommitting guest memory (Manual)
لغة النص الأصلي: الإنجليزية
Restrict access to cross datavolumes cloning (Manual)
لغة النص الأصلي: الإنجليزية
Disable Shareable disks (Automated)
لغة النص الأصلي: الإنجليزية