From 9d0e3491a03e4721a47248018526bbbcb459fcc7 Mon Sep 17 00:00:00 2001 From: 030 Date: Sat, 1 Jun 2019 16:40:45 +0200 Subject: [PATCH] [GH-191] explained that master nodes cannot be inspected in managed k8s --- README.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/README.md b/README.md index 8eb2b98..fbd261c 100644 --- a/README.md +++ b/README.md @@ -5,7 +5,7 @@ kube-bench logo -kube-bench is a Go application that checks whether Kubernetes is deployed securely by running the checks documented in the [CIS Kubernetes Benchmark](https://www.cisecurity.org/benchmark/kubernetes/). +kube-bench is a Go application that checks whether Kubernetes is deployed securely by running the checks documented in the [CIS Kubernetes Benchmark](https://www.cisecurity.org/benchmark/kubernetes/). Note that it is impossible to inspect master nodes of managed clusters, e.g. GKE, EKS and AKS, using kube-bench as one does not have access to such nodes. Tests are configured with YAML files, making this tool easy to update as test specifications evolve.