Minimize the admission of containers wishing to share the host process ID namespace (Manual)
原文の言語: 英語
メニュー
このリポジトリの skills
SkillsMP は CyberStrikeus/CyberStrike から 7,442 件の skill を収集しています。skill を開くとソースと詳細を確認できます。
CyberStrikeus/CyberStrike収集済み skill 7,442 件中 40 件を表示しています。
Minimize the admission of containers wishing to share the host process ID namespace (Manual)
原文の言語: 英語
Minimize the admission of containers wishing to share the host IPC namespace (Manual)
原文の言語: 英語
Minimize the admission of containers wishing to share the host network namespace (Manual)
原文の言語: 英語
Minimize the admission of containers with allowPrivilegeEscalation (Manual)
原文の言語: 英語
Ensure CNI plugin supports network policies (Manual)
原文の言語: 英語
Ensure that all Namespaces have Network Policies defined (Manual)
原文の言語: 英語
Prefer using secrets as files over secrets as environment variables (Automated)
原文の言語: 英語
Consider external secret storage (Manual)
原文の言語: 英語
Create administrative boundaries between resources using namespaces (Manual)
原文の言語: 英語
The default namespace should not be used (Automated)
原文の言語: 英語
Ensure Image Vulnerability Scanning using Amazon ECR image scanning or a third party provider (Automated)
原文の言語: 英語
Minimize user access to Amazon ECR (Manual)
原文の言語: 英語
Minimize cluster access to read-only for Amazon ECR (Manual)
原文の言語: 英語
Minimize Container Registries to only those approved (Manual)
原文の言語: 英語
Prefer using dedicated EKS Service Accounts (Automated)
原文の言語: 英語
Ensure Kubernetes Secrets are encrypted using Customer Master Keys (CMKs) managed in AWS KMS (Manual)
原文の言語: 英語
Restrict Access to the Control Plane Endpoint (Automated)
原文の言語: 英語
Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)
原文の言語: 英語
Ensure clusters are created with Private Nodes (Automated)
原文の言語: 英語
Ensure AmazonEKSNetworkingPolicy is Enabled and set as appropriate (Automated)
原文の言語: 英語
Encrypt traffic to HTTPS load balancers with TLS certificates (Manual)
原文の言語: 英語
Manage Kubernetes RBAC users with AWS IAM Authenticator for Kubernetes or Upgrade to AWS CLI v1.16.156 or greater (Manual)
原文の言語: 英語
Enable audit Logs (Manual)
原文の言語: 英語
Ensure that the kubeconfig file permissions are set to 644 or more restrictive (Automated)
原文の言語: 英語
Ensure that the kubelet kubeconfig file ownership is set to root:root (Automated)
原文の言語: 英語
Ensure that the azure.json file has permissions set to 644 or more restrictive (Automated)
原文の言語: 英語
Ensure that the azure.json file ownership is set to root:root (Automated)
原文の言語: 英語
Ensure that the --anonymous-auth argument is set to false (Automated)
原文の言語: 英語
Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)
原文の言語: 英語
Ensure that the --client-ca-file argument is set as appropriate (Automated)
原文の言語: 英語
Ensure that the --read-only-port is secured (Automated)
原文の言語: 英語
Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)
原文の言語: 英語
Ensure that the --make-iptables-util-chains argument is set to true (Automated)
原文の言語: 英語
Ensure that the --eventRecordQPS argument is set to 0 or a level which ensures appropriate event capture (Automated)
原文の言語: 英語
Ensure that the --rotate-certificates argument is not set to false (Automated)
原文の言語: 英語
Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)
原文の言語: 英語
Ensure that the cluster-admin role is only used where required (Automated)
原文の言語: 英語
Minimize access to secrets (Automated)
原文の言語: 英語
Minimize wildcard use in Roles and ClusterRoles (Automated)
原文の言語: 英語
Minimize access to create pods (Automated)
原文の言語: 英語