Minimize the admission of privileged containers (Automated)
原文语言:英语
菜单
这个仓库中的 skills
SkillsMP 已收集 CyberStrikeus/CyberStrike 中的 7,442 个 Skill。打开任一 Skill 可查看来源和详情。
CyberStrikeus/CyberStrike已展示 40 / 7,442 个已收集 Skill。
Minimize the admission of privileged containers (Automated)
原文语言:英语
Minimize the admission of containers wishing to share the host process ID namespace (Automated)
原文语言:英语
Minimize the admission of containers wishing to share the host IPC namespace (Automated)
原文语言:英语
Minimize the admission of containers wishing to share the host network namespace (Automated)
原文语言:英语
Minimize the admission of containers with allowPrivilegeEscalation (Automated)
原文语言:英语
Ensure latest CNI version is used (Manual)
原文语言:英语
Ensure that all Namespaces have Network Policies defined (Automated)
原文语言:英语
Prefer using secrets as files over secrets as environment variables (Manual)
原文语言:英语
Consider external secret storage (Manual)
原文语言:英语
Create administrative boundaries between resources using namespaces (Manual)
原文语言:英语
Apply Security Context to Your Pods and Containers (Manual)
原文语言:英语
The default namespace should not be used (Automated)
原文语言:英语
Ensure Image Vulnerability Scanning using Oracle Vulnerability Scanning Service (Manual)
原文语言:英语
Minimize user access to Oracle Cloud Infrastructure Container Registry (OCIR) (Manual)
原文语言:英语
Minimize cluster access to read-only for Oracle Cloud Infrastructure Container Registry (OCIR) (Manual)
原文语言:英语
Minimize Container Registries to only those approved (Manual)
原文语言:英语
Prefer using dedicated OCI tenancies to manage OKE clusters (Manual)
原文语言:英语
Ensure Kubernetes Secrets are encrypted (Manual)
原文语言:英语
Restrict Access to the Control Plane Endpoint (Automated)
原文语言:英语
Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)
原文语言:英语
Ensure clusters are created with Private Nodes (Automated)
原文语言:英语
Ensure Network Policy is Enabled and set as appropriate (Automated)
原文语言:英语
Encrypt traffic to HTTPS load balancers with TLS certificates (Manual)
原文语言:英语
Manage Kubernetes RBAC users with Oracle Cloud Infrastructure Identity and Access Management (IAM) (Manual)
原文语言:英语
Client certificate authentication should not be used for users (Manual)
原文语言:英语
Ensure access to OCI Audit service Log for OKE (Manual)
原文语言:英语
Ensure that the kubelet-config.json file permissions are set to 644 or more restrictive (Automated)
原文语言:英语
Ensure that the kubelet-config.json file ownership is set to root:root (Automated)
原文语言:英语
Ensure that the kubelet configuration file has permissions set to 644 or more restrictive (Automated)
原文语言:英语
Ensure that the kubelet configuration file ownership is set to root:root (Automated)
原文语言:英语
Ensure that the --anonymous-auth argument is set to false (Automated)
原文语言:英语
Ensure that the --rotate-server-certificates argument is set to true (Automated)
原文语言:英语
Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)
原文语言:英语
Ensure that the --client-ca-file argument is set as appropriate (Automated)
原文语言:英语
Ensure that the --read-only-port argument is set to 0 (Automated)
原文语言:英语
Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)
原文语言:英语
Ensure that the --make-iptables-util-chains argument is set to true (Automated)
原文语言:英语
Ensure that the --event-qps argument is set to 0 or a level which ensures appropriate event capture (Automated)
原文语言:英语
Ensure that the --tls-cert-file and --tls-private-key-file arguments are set as appropriate (Automated)
原文语言:英语
Ensure that the --rotate-certificates argument is not set to false (Automated)
原文语言:英语