Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)
原文の言語: 英語
メニュー
このリポジトリの skills
SkillsMP は CyberStrikeus/CyberStrike から 7,442 件の skill を収集しています。skill を開くとソースと詳細を確認できます。
CyberStrikeus/CyberStrike収集済み skill 7,442 件中 40 件を表示しています。
Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)
原文の言語: 英語
Ensure that the cluster-admin role is only used where required (Manual)
原文の言語: 英語
Minimize access to the approval sub-resource of certificatesigningrequests objects (Manual)
原文の言語: 英語
Minimize access to webhook configuration objects (Manual)
原文の言語: 英語
Minimize access to the service account token creation (Manual)
原文の言語: 英語
Minimize access to secrets (Manual)
原文の言語: 英語
Minimize wildcard use in Roles and ClusterRoles (Manual)
原文の言語: 英語
Minimize access to create pods (Manual)
原文の言語: 英語
Ensure that default service accounts are not actively used (Manual)
原文の言語: 英語
Ensure Service Account Tokens are only mounted where necessary (Manual)
原文の言語: 英語
Limit use of Bind, Impersonate and Escalate permissions (Manual)
原文の言語: 英語
Minimize access to create persistent volumes (Manual)
原文の言語: 英語
Minimize access to the proxy sub-resource of nodes (Manual)
原文の言語: 英語
Minimize the admission of privileged containers (Manual)
原文の言語: 英語
Minimize the admission of containers wishing to share the host process ID namespace (Manual)
原文の言語: 英語
Minimize the admission of containers wishing to share the host IPC namespace (Manual)
原文の言語: 英語
Minimize the admission of containers wishing to share the host network namespace (Manual)
原文の言語: 英語
Minimize the admission of containers with allowPrivilegeEscalation (Manual)
原文の言語: 英語
Ensure latest CNI version is used (Manual)
原文の言語: 英語
Ensure all Namespaces have Network Policies defined (Automated)
原文の言語: 英語
Prefer using secrets as files over secrets as environment variables (Automated)
原文の言語: 英語
Consider external secret storage (Manual)
原文の言語: 英語
Create administrative boundaries between resources using namespaces (Manual)
原文の言語: 英語
Apply Security Context to Your Pods and Containers (Manual)
原文の言語: 英語
The default namespace should not be used (Automated)
原文の言語: 英語
Ensure Image Vulnerability Scanning using Microsoft Defender for Cloud (MDC) image scanning or a third party provider (Automated)
原文の言語: 英語
Minimize user access to Azure Container Registry (ACR) (Manual)
原文の言語: 英語
Minimize cluster access to read-only for Azure Container Registry (ACR) (Manual)
原文の言語: 英語
Minimize Container Registries to only those approved (Manual)
原文の言語: 英語
Prefer using dedicated AKS Service Accounts (Manual)
原文の言語: 英語
Ensure Kubernetes Secrets are encrypted (Manual)
原文の言語: 英語
Restrict Access to the Control Plane Endpoint (Automated)
原文の言語: 英語
Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)
原文の言語: 英語
Ensure clusters are created with Private Nodes (Automated)
原文の言語: 英語
Ensure Network Policy is Enabled and set as appropriate (Automated)
原文の言語: 英語
Encrypt traffic to HTTPS load balancers with TLS certificates (Manual)
原文の言語: 英語
Manage Kubernetes RBAC users with Azure AD (Manual)
原文の言語: 英語
Use Azure RBAC for Kubernetes Authorization (Manual)
原文の言語: 英語
Ensure that the cluster-admin role is only used where required (Automated)
原文の言語: 英語
Avoid non-default bindings to system:authenticated (Automated)
原文の言語: 英語