Ensure Image Vulnerability Scanning using Amazon ECR image scanning or a third party provider (Automated)
Idioma do texto original: inglês
Menu
Skills neste repositório
O SkillsMP coletou 7.442 skills de CyberStrikeus/CyberStrike. Abra uma skill para revisar a origem e os detalhes.
CyberStrikeus/CyberStrikeMostrando 40 de 7.442 skills coletadas.
Ensure Image Vulnerability Scanning using Amazon ECR image scanning or a third party provider (Automated)
Idioma do texto original: inglês
Minimize user access to Amazon ECR (Manual)
Idioma do texto original: inglês
Minimize cluster access to read-only for Amazon ECR (Manual)
Idioma do texto original: inglês
Minimize Container Registries to only those approved (Manual)
Idioma do texto original: inglês
Prefer using dedicated EKS Service Accounts (Automated)
Idioma do texto original: inglês
Ensure Kubernetes Secrets are encrypted using Customer Master Keys (CMKs) managed in AWS KMS (Manual)
Idioma do texto original: inglês
Restrict Access to the Control Plane Endpoint (Automated)
Idioma do texto original: inglês
Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)
Idioma do texto original: inglês
Ensure clusters are created with Private Nodes (Automated)
Idioma do texto original: inglês
Ensure Network Policy is Enabled and set as appropriate (Automated)
Idioma do texto original: inglês
Encrypt traffic to HTTPS load balancers with TLS certificates (Manual)
Idioma do texto original: inglês
Manage Kubernetes RBAC users with AWS IAM Authenticator for Kubernetes or Upgrade to AWS CLI v1.16.156 or greater (Manual)
Idioma do texto original: inglês
Enable audit Logs (Automated)
Idioma do texto original: inglês
Ensure audit logs are collected and managed (Manual)
Idioma do texto original: inglês
Ensure that the kubeconfig file permissions are set to 644 or more restrictive (Automated)
Idioma do texto original: inglês
Ensure that the kubelet kubeconfig file ownership is set to root:root (Automated)
Idioma do texto original: inglês
Ensure that the kubelet configuration file has permissions set to 644 or more restrictive (Automated)
Idioma do texto original: inglês
Ensure that the kubelet configuration file ownership is set to root:root (Automated)
Idioma do texto original: inglês
Ensure that the Anonymous Auth is Not Enabled (Automated)
Idioma do texto original: inglês
Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)
Idioma do texto original: inglês
Ensure that a Client CA File is Configured (Automated)
Idioma do texto original: inglês
Ensure that the --read-only-port is disabled (Automated)
Idioma do texto original: inglês
Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)
Idioma do texto original: inglês
Ensure that the --make-iptables-util-chains argument is set to true (Automated)
Idioma do texto original: inglês
Ensure that the --eventRecordQPS argument is set to 0 or a level which ensures appropriate event capture (Automated)
Idioma do texto original: inglês
Ensure that the --rotate-certificates argument is not present or is set to true (Automated)
Idioma do texto original: inglês
Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)
Idioma do texto original: inglês
Ensure that the cluster-admin role is only used where required (Manual)
Idioma do texto original: inglês
Minimize access to the proxy sub-resource of nodes (Manual)
Idioma do texto original: inglês
Minimize access to webhook configuration objects (Manual)
Idioma do texto original: inglês
Minimize access to the service account token creation (Manual)
Idioma do texto original: inglês
Minimize access to secrets (Manual)
Idioma do texto original: inglês
Minimize wildcard use in Roles and ClusterRoles (Manual)
Idioma do texto original: inglês
Minimize access to create pods (Manual)
Idioma do texto original: inglês
Ensure that default service accounts are not actively used (Manual)
Idioma do texto original: inglês
Ensure that Service Account Tokens are only mounted where necessary (Manual)
Idioma do texto original: inglês
Cluster Access Manager API to streamline and enhance the management of access controls within EKS clusters (Automated)
Idioma do texto original: inglês
Limit use of the Bind, Impersonate and Escalate permissions in the Kubernetes cluster (Manual)
Idioma do texto original: inglês
Minimize access to create persistent volumes (Manual)
Idioma do texto original: inglês
Minimize the admission of privileged containers (Manual)
Idioma do texto original: inglês