cis-gke-autopilot-v130-4.6.4
The default namespace should not be used (Automated)
Browse reusable Agent Skills, each with a clear purpose and practical guidance.
The default namespace should not be used (Automated)
Minimize user access to Container Image repositories (Manual)
Minimize cluster access to read-only for Container Image repositories (Manual)
Ensure only trusted container images are used (Automated)
Ensure GKE clusters are not running using the Compute Engine default service account (Automated)
Ensure Kubernetes Secrets are encrypted using keys managed in Cloud KMS (Automated)
Enable VPC Flow Logs and Intranode Visibility (Automated)
Ensure clusters are created with Private Endpoint Enabled and Public Access Disabled (Automated)
Ensure clusters are created with Private Nodes (Automated)
Ensure use of Google-managed SSL Certificates (Automated)