DevOps & Security skills

Browse reusable Agent Skills, each with a clear purpose and practical guidance.

cis-k8s-v1110-2.7

Ensure that the --peer-auto-tls argument is not set to true (Automated)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v1110-2.8

Ensure that a unique Certificate Authority is used for etcd (Manual)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v1110-3.1.2

Service account token authentication should not be used for users (Manual)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v1110-3.1.3

Bootstrap token authentication should not be used for users (Manual)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v1110-3.2.1

Ensure that a minimal audit policy is created (Manual)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v1110-3.2.2

Ensure that the audit policy covers key security concerns (Manual)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v1110-4.1.1

Ensure that the kubelet service file permissions are set to 600 or more restrictive (Automated)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v1110-4.1.10

If the kubelet config.yaml configuration file is being used validate file ownership is set to root:root (Automated)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v1110-4.1.2

Ensure that the kubelet service file ownership is set to root:root (Automated)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v1110-4.1.3

If proxy kubeconfig file exists ensure permissions are set to 600 or more restrictive (Manual)

1.21k repo starsObserved in 1 repos
DevOps & Security