Ensure that the API Server only makes use of Strong Cryptographic Ciphers (Manual)
原文语言:英语
菜单
这个仓库中的 skills
SkillsMP 已收集 CyberStrikeus/CyberStrike 中的 7,442 个 Skill。打开任一 Skill 可查看来源和详情。
CyberStrikeus/CyberStrike已展示 40 / 7,442 个已收集 Skill。
Ensure that the API Server only makes use of Strong Cryptographic Ciphers (Manual)
原文语言:英语
Ensure that unsupported configuration overrides are not used (Manual)
原文语言:英语
Use https for kubelet connections (Manual)
原文语言:英语
Ensure that the kubelet uses certificates to authenticate (Manual)
原文语言:英语
Verify that the kubelet certificate authority is set as appropriate (Manual)
原文语言:英语
Ensure that the --authorization-mode argument is not set to AlwaysAllow (Manual)
原文语言:英语
Verify that RBAC is enabled (Manual)
原文语言:英语
Ensure that the APIPriorityAndFairness feature gate is enabled (Manual)
原文语言:英语
Ensure controller manager healthz endpoints protected by RBAC (Manual)
原文语言:英语
Ensure --use-service-account-credentials set to true (Manual)
原文语言:英语
Ensure --service-account-private-key-file set (Manual)
原文语言:英语
Ensure --root-ca-file set as appropriate (Manual)
原文语言:英语
Ensure --bind-address set to 127.0.0.1 (Manual)
原文语言:英语
Ensure healthz endpoints for scheduler protected by RBAC (Manual)
原文语言:英语
Verify scheduler API service protected by RBAC (Manual)
原文语言:英语
Ensure --cert-file and --key-file set (Manual)
原文语言:英语
Ensure --client-cert-auth set to true (Manual)
原文语言:英语
Ensure --auto-tls not set to true (Manual)
原文语言:英语
Ensure --peer-cert-file and --peer-key-file set (Manual)
原文语言:英语
Ensure --peer-client-cert-auth set to true (Manual)
原文语言:英语
Ensure --peer-auto-tls not set to true (Manual)
原文语言:英语
Ensure unique Certificate Authority used for etcd (Manual)
原文语言:英语
Client certificate authentication should not be used for users (Manual)
原文语言:英语
Ensure minimal audit policy created (Manual)
原文语言:英语
Ensure audit policy covers key security concerns (Manual)
原文语言:英语
Ensure that the kubelet service file permissions are set to 644 or more restrictive (Automated)
原文语言:英语
Ensure that the kubelet configuration file ownership is set to root:root (Automated)
原文语言:英语
Ensure that the kubelet service file ownership is set to root:root (Automated)
原文语言:英语
If proxy kubeconfig file exists ensure permissions are set to 644 or more restrictive (Manual)
原文语言:英语
If proxy kubeconfig file exists ensure ownership is set to root:root (Manual)
原文语言:英语
Ensure that the --kubeconfig kubelet.conf file permissions are set to 644 or more restrictive (Automated)
原文语言:英语
Ensure that the --kubeconfig kubelet.conf file ownership is set to root:root (Automated)
原文语言:英语
Ensure that the certificate authorities file permissions are set to 644 or more restrictive (Automated)
原文语言:英语
Ensure that the client certificate authorities file ownership is set to root:root (Automated)
原文语言:英语
Ensure that the kubelet --config configuration file has permissions set to 600 or more restrictive (Automated)
原文语言:英语
Activate Garbage collection in OpenShift Container Platform 4, as appropriate (Manual)
原文语言:英语
Ensure that the --rotate-certificates argument is not set to false (Manual)
原文语言:英语
Verify that the RotateKubeletServerCertificate argument is set to true (Manual)
原文语言:英语
Ensure that the Kubelet only makes use of Strong Cryptographic Ciphers (Manual)
原文语言:英语
Ensure that the --anonymous-auth argument is set to false (Automated)
原文语言:英语