cis-eks-v160-4.4.2
Consider external secret storage (Manual)
1.21k repo starsObserved in 1 repos
DevOps & Security
Browse reusable Agent Skills, each with a clear purpose and practical guidance.
Consider external secret storage (Manual)
Create administrative boundaries between resources using namespaces (Manual)
The default namespace should not be used (Automated)
Ensure Image Vulnerability Scanning using Amazon ECR image scanning or a third party provider (Automated)
Minimize user access to Amazon ECR (Manual)
Minimize cluster access to read-only for Amazon ECR (Manual)
Minimize Container Registries to only those approved (Manual)
Prefer using dedicated EKS Service Accounts (Automated)
Ensure Kubernetes Secrets are encrypted using Customer Master Keys (CMKs) managed in AWS KMS (Manual)
Restrict Access to the Control Plane Endpoint (Automated)