DevOps & Security skills

Browse reusable Agent Skills, each with a clear purpose and practical guidance.

cis-k8s-v200-2.4

Ensure that the --peer-cert-file and --peer-key-file arguments are set as appropriate (Automated)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v200-2.6

Ensure that the --peer-auto-tls argument is not set to true (Automated)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v200-2.7

Ensure that a unique Certificate Authority is used for etcd (Manual)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v200-3.1.1

Client certificate authentication should not be used for users (Manual)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v200-3.1.2

Service account token authentication should not be used for users (Manual)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v200-3.2.1

Ensure that a minimal audit policy is created (Manual)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v200-4.1.1

Ensure that the kubelet service file permissions are set to 600 or more restrictive (Automated)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v200-4.1.10

If the kubelet config.yaml configuration file is being used validate file ownership is set to root:root (Automated)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v200-4.1.2

Ensure that the kubelet service file ownership is set to root:root (Automated)

1.21k repo starsObserved in 1 repos
DevOps & Security

cis-k8s-v200-4.1.4

If proxy kubeconfig file exists ensure ownership is set to root:root (Manual)

1.21k repo starsObserved in 1 repos
DevOps & Security