Ensure Image Vulnerability Scanning is enabled (Automated)
원문 언어: 영어
메뉴
이 저장소의 skills
SkillsMP는 CyberStrikeus/CyberStrike에서 7,442개의 skill을 수집했습니다. skill을 열어 소스와 세부 정보를 확인하세요.
CyberStrikeus/CyberStrike수집된 skill 7,442개 중 40개를 표시합니다.
Ensure Image Vulnerability Scanning is enabled (Automated)
원문 언어: 영어
Minimize user access to Container Image repositories (Manual)
원문 언어: 영어
Minimize cluster access to read-only for Container Image repositories (Manual)
원문 언어: 영어
Ensure only trusted container images are used (Automated)
원문 언어: 영어
Ensure GKE clusters are not running using the Compute Engine default service account (Automated)
원문 언어: 영어
Ensure Kubernetes Secrets are encrypted using keys managed in Cloud KMS (Automated)
원문 언어: 영어
Enable VPC Flow Logs and Intranode Visibility (Automated)
원문 언어: 영어
Ensure Control Plane Authorized Networks is Enabled (Manual)
원문 언어: 영어
Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)
원문 언어: 영어
Ensure clusters are created with Private Nodes (Automated)
원문 언어: 영어
Ensure use of Google-managed SSL Certificates (Automated)
원문 언어: 영어
Manage Kubernetes RBAC users with Google Groups for GKE (Manual)
원문 언어: 영어
Enable Customer-Managed Encryption Keys (CMEK) for GKE Persistent Disks (PD) (Manual)
원문 언어: 영어
Enable Security Posture (Automated)
원문 언어: 영어
Ensure that the proxy kubeconfig file permissions are set to 644 or more restrictive (Automated)
원문 언어: 영어
Ensure that the proxy kubeconfig file ownership is set to root:root (Automated)
원문 언어: 영어
Ensure that the kubelet configuration file has permissions set to 644 (Automated)
원문 언어: 영어
Ensure that the kubelet configuration file ownership is set to root:root (Automated)
원문 언어: 영어
Ensure that the Anonymous Auth is Not Enabled Draft (Automated)
원문 언어: 영어
Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)
원문 언어: 영어
Ensure that a Client CA File is Configured (Automated)
원문 언어: 영어
Ensure that the --read-only-port is disabled (Automated)
원문 언어: 영어
Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)
원문 언어: 영어
Ensure that the --make-iptables-util-chains argument is set to true (Automated)
원문 언어: 영어
Ensure that the --eventRecordQPS argument is set to 0 or a level which ensures appropriate event capture (Automated)
원문 언어: 영어
Ensure that the --rotate-certificates argument is not present or is set to true (Automated)
원문 언어: 영어
Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)
원문 언어: 영어
Ensure that the cluster-admin role is only used where required (Automated)
원문 언어: 영어
Avoid non-default bindings to system:authenticated (Automated)
원문 언어: 영어
Minimize access to secrets (Automated)
원문 언어: 영어
Minimize wildcard use in Roles and ClusterRoles (Automated)
원문 언어: 영어
Ensure that default service accounts are not actively used (Automated)
원문 언어: 영어
Ensure that Service Account Tokens are only mounted where necessary (Automated)
원문 언어: 영어
Avoid use of system:masters group (Automated)
원문 언어: 영어
Limit use of the Bind, Impersonate and Escalate permissions in the Kubernetes cluster (Manual)
원문 언어: 영어
Avoid bindings to system:anonymous (Automated)
원문 언어: 영어
Avoid non-default bindings to system:unauthenticated (Automated)
원문 언어: 영어
Ensure that the cluster enforces Pod Security Standard Baseline profile or stricter for all namespaces (Manual)
원문 언어: 영어
Ensure that the CNI in use supports Network Policies (Manual)
원문 언어: 영어
Ensure that all Namespaces have Network Policies defined (Automated)
원문 언어: 영어