Ensure that a unique Certificate Authority is used for etcd (Manual)
原文の言語: 英語
メニュー
このリポジトリの skills
SkillsMP は CyberStrikeus/CyberStrike から 7,442 件の skill を収集しています。skill を開くとソースと詳細を確認できます。
CyberStrikeus/CyberStrike収集済み skill 7,442 件中 40 件を表示しています。
Ensure that a unique Certificate Authority is used for etcd (Manual)
原文の言語: 英語
Client certificate authentication should not be used for users (Manual)
原文の言語: 英語
Service account token authentication should not be used for users (Manual)
原文の言語: 英語
Bootstrap token authentication should not be used for users (Manual)
原文の言語: 英語
Ensure that a minimal audit policy is created (Manual)
原文の言語: 英語
Ensure that the audit policy covers key security concerns (Manual)
原文の言語: 英語
Ensure that the kubelet service file permissions are set to 600 or more restrictive (Automated)
原文の言語: 英語
If the kubelet config.yaml configuration file is being used validate file ownership is set to root:root (Automated)
原文の言語: 英語
Ensure that the kubelet service file ownership is set to root:root (Automated)
原文の言語: 英語
If proxy kubeconfig file exists ensure permissions are set to 600 or more restrictive (Manual)
原文の言語: 英語
If proxy kubeconfig file exists ensure ownership is set to root:root (Manual)
原文の言語: 英語
Ensure that the --kubeconfig kubelet.conf file permissions are set to 600 or more restrictive (Automated)
原文の言語: 英語
Ensure that the --kubeconfig kubelet.conf file ownership is set to root:root (Automated)
原文の言語: 英語
Ensure that the certificate authorities file permissions are set to 644 or more restrictive (Manual)
原文の言語: 英語
Ensure that the client certificate authorities file ownership is set to root:root (Manual)
原文の言語: 英語
If the kubelet config.yaml configuration file is being used validate permissions set to 600 or more restrictive (Automated)
原文の言語: 英語
Ensure that the --anonymous-auth argument is set to false (Automated)
原文の言語: 英語
Ensure that the --rotate-certificates argument is not set to false (Automated)
原文の言語: 英語
Verify that the RotateKubeletServerCertificate argument is set to true (Manual)
原文の言語: 英語
Ensure that the Kubelet only makes use of Strong Cryptographic Ciphers (Manual)
原文の言語: 英語
Ensure that a limit is set on pod PIDs (Manual)
原文の言語: 英語
Ensure that the --seccomp-default parameter is set to true (Manual)
原文の言語: 英語
Ensure that the --IPAddressDeny is set to any (Manual)
原文の言語: 英語
Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)
原文の言語: 英語
Ensure that the --client-ca-file argument is set as appropriate (Automated)
原文の言語: 英語
Verify that if defined, readOnlyPort is set to 0 (Manual)
原文の言語: 英語
Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Manual)
原文の言語: 英語
Ensure that the --make-iptables-util-chains argument is set to true (Automated)
原文の言語: 英語
Ensure that the --hostname-override argument is not set (Manual)
原文の言語: 英語
Ensure that the eventRecordQPS argument is set to a level which ensures appropriate event capture (Manual)
原文の言語: 英語
Ensure that the --tls-cert-file and --tls-private-key-file arguments are set as appropriate (Manual)
原文の言語: 英語
Ensure that the kube-proxy metrics service is bound to localhost (Manual)
原文の言語: 英語
Ensure that the cluster-admin role is only used where required (Manual)
原文の言語: 英語
Minimize access to the proxy sub-resource of nodes (Manual)
原文の言語: 英語
Minimize access to the approval sub-resource of certificatesigningrequests objects (Manual)
原文の言語: 英語
Minimize access to webhook configuration objects (Manual)
原文の言語: 英語
Minimize access to the service account token creation (Manual)
原文の言語: 英語
Minimize access to secrets (Manual)
原文の言語: 英語
Minimize wildcard use in Roles and ClusterRoles (Manual)
原文の言語: 英語
Minimize access to create pods (Manual)
原文の言語: 英語