cis-oke-v170-5.2.1
Prefer using dedicated Service Accounts (Automated)
1.21k repo starsObserved in 1 repos
DevOps & Security
Browse reusable Agent Skills, each with a clear purpose and practical guidance.
Prefer using dedicated Service Accounts (Automated)
Encrypting Kubernetes Secrets at Rest in Etcd (Manual)
Restrict Access to the Control Plane Endpoint (Automated)
Ensure clusters created with Private Endpoint Enabled and Public Access Disabled (Automated)
Ensure clusters are created with Private Nodes (Automated)
Encrypt traffic to HTTPS load balancers with TLS certificates (Manual)
Access Control and Container Engine for Kubernetes (Manual)
Client certificate authentication should not be used for users (Manual)
Ensure access to OCI Audit service Log for OKE (Manual)
Ensure that the kubelet-config.json file permissions are set to 644 or more restrictive (Automated)