cis-ocp-v180-2.2
Ensure --client-cert-auth set to true (Manual)
Browse reusable Agent Skills, each with a clear purpose and practical guidance.
Ensure --client-cert-auth set to true (Manual)
Ensure --peer-cert-file and --peer-key-file set (Manual)
Ensure unique Certificate Authority used for etcd (Manual)
Client certificate authentication should not be used for users (Manual)
Ensure minimal audit policy created (Manual)
Ensure that the kubelet service file permissions are set to 644 or more restrictive (Automated)
Ensure that the kubelet configuration file ownership is set to root:root (Automated)
Ensure that the kubelet service file ownership is set to root:root (Automated)
If proxy kube proxy configuration file exists ensure permissions are set to 644 or more restrictive (Manual)
If proxy kubeconfig file exists ensure ownership is set to root:root (Manual)