Skip to content

CIS Kubernetes Benchmark 1.5.1 # 5.1 #8

Description

@saurabhpandit

5.1 RBAC and Service Accounts

  • 5.1.1 Ensure that the cluster-admin role is only used where required
  • 5.1.2 Minimize access to secrets
  • 5.1.3 Minimize wildcard use in Roles and ClusterRoles
  • 5.1.4 Minimize access to create pods
  • 5.1.5 Ensure that default service accounts are not actively used
  • 5.1.6 Ensure that Service Account Tokens are only mounted where necessary

Metadata

Metadata

Assignees

Type

No type
No fields configured for issues without a type.

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions