Skip to content

CIS Kubernetes Benchmark 1.5.1 # 5.1Β #8

@saurabhpandit

Description

@saurabhpandit

5.1 RBAC and Service Accounts

  • 5.1.1 Ensure that the cluster-admin role is only used where required
  • 5.1.2 Minimize access to secrets
  • 5.1.3 Minimize wildcard use in Roles and ClusterRoles
  • 5.1.4 Minimize access to create pods
  • 5.1.5 Ensure that default service accounts are not actively used
  • 5.1.6 Ensure that Service Account Tokens are only mounted where necessary

Metadata

Metadata

Assignees

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions