Skip to content

Commit c7952b2

Browse files
Update controlling-access.md
1 parent 7e54b18 commit c7952b2

File tree

1 file changed

+1
-5
lines changed

1 file changed

+1
-5
lines changed

content/en/docs/concepts/security/controlling-access.md

Lines changed: 1 addition & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -129,16 +129,12 @@ The available Admission Control modules are described in [Admission Controllers]
129129
Once a request passes all admission controllers, it is validated using the validation routines
130130
for the corresponding API object, and then written to the object store (shown as step **4**).
131131

132-
133132
## Auditing
134133

135134
Kubernetes auditing provides a security-relevant, chronological set of records documenting the sequence of actions in a cluster.
136135
The cluster audits the activities generated by users, by applications that use the Kubernetes API, and by the control plane itself.
137-
Each request on each stage of its execution generates an audit event, which is then pre-processed according to a certain policy and written to a backend.
138-
The policy determines what's recorded when an event is processed and it's compared against the list of rules in order. The first matching rule sets the audit level of the event.
139-
The defined audit levels are: None, Metadata, Request and RequestResponse.
140-
The Audit backends persist audit events to an external storage. By default kube-apiserver provides two backends: log and webhook backend.
141136

137+
For more information, see "[Auditing](https://kubernetes.io/docs/tasks/debug-application-cluster/audit/)".
142138

143139
## API server ports and IPs
144140

0 commit comments

Comments
 (0)