File tree Expand file tree Collapse file tree 1 file changed +3
-3
lines changed Expand file tree Collapse file tree 1 file changed +3
-3
lines changed Original file line number Diff line number Diff line change @@ -3,7 +3,7 @@ title: Center for Internet Security (CIS) Kubernetes benchmark
3
3
description : Learn how AKS applies the CIS Kubernetes benchmark
4
4
services : container-service
5
5
ms.topic : article
6
- ms.date : 01/18 /2022
6
+ ms.date : 10/04 /2022
7
7
---
8
8
9
9
# Center for Internet Security (CIS) Kubernetes benchmark
@@ -139,7 +139,7 @@ Recommendations can have one of the following statuses:
139
139
| 4.2.9| Ensure that the ` --event-qps ` argument is set to 0 or a level which ensures appropriate event capture| Not Scored| L2| Pass|
140
140
| 4.2.10| Ensure that the ` --tls-cert-file ` and ` --tls-private-key-file ` arguments are set as appropriate| Scored| L1| Equivalent Control|
141
141
| 4.2.11| Ensure that the ` --rotate-certificates ` argument is not set to false| Scored| L1| Pass|
142
- | 4.2.12| Ensure that the RotateKubeletServerCertificate argument is set to true| Scored| L1| Pass |
142
+ | 4.2.12| Ensure that the RotateKubeletServerCertificate argument is set to true| Scored| L1| Fail |
143
143
| 4.2.13| Ensure that the Kubelet only makes use of Strong Cryptographic Ciphers| Not Scored| L1| Pass|
144
144
| 5| Policies||||
145
145
| 5.1| RBAC and Service Accounts||||
@@ -196,4 +196,4 @@ For more information about AKS security, see the following articles:
196
196
[ auzre-log-analytics-agent-overview ] : ../azure-monitor/platform/log-analytics-agent.md
197
197
[ cis-benchmarks ] : /compliance/regulatory/offering-CIS-Benchmark
198
198
[ cis-benchmark-aks ] : https://www.cisecurity.org/benchmark/kubernetes/
199
- [ cis-benchmark-kubernetes ] : https://www.cisecurity.org/benchmark/kubernetes/
199
+ [ cis-benchmark-kubernetes ] : https://www.cisecurity.org/benchmark/kubernetes/
You can’t perform that action at this time.
0 commit comments