cis-eks-v180-5.1.1
Ensure Image Vulnerability Scanning using Amazon ECR image scanning or a third party provider (Automated)
Browse reusable Agent Skills, each with a clear purpose and practical guidance.
Ensure Image Vulnerability Scanning using Amazon ECR image scanning or a third party provider (Automated)
Minimize user access to Amazon ECR (Manual)
Minimize cluster access to read-only for Amazon ECR (Manual)
Minimize Container Registries to only those approved (Manual)
Prefer using dedicated EKS Service Accounts (Automated)
Restrict Access to the Control Plane Endpoint (Automated)
Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)
Ensure AmazonEKSNetworkingPolicy is Enabled and set as appropriate (Automated)
Manage Kubernetes RBAC users with AWS IAM Authenticator for Kubernetes or Upgrade to AWS CLI v1.16.156 or greater (Manual)
Ensure mounting of udf filesystems is disabled