mirror of
https://github.com/aquasecurity/kube-bench.git
synced 2024-11-23 00:28:07 +00:00
72f5a54777
. MASTER: a. Checks 1.1.10,1.1.20 are manual according to https://docs.rke2.io/security/cis_self_assessment124#1110-ensure-that-the-container-network-interface-file-ownership-is-set-to-root-manual and https://docs.rke2.io/security/cis_self_assessment124#1110-ensure-that-the-container-network-interface-file-ownership-is-set-to-root-manual respectively. b. Check 1.3.6 is not relevant to an RKE2 cluster as RKE2 rotates TLS certificates internally - https://github.com/rancher/dashboard/issues/4485. We will skip it and not score it 2. NODE: a. Check 4.2.12 is the node-level equivalent of the master-level check 1.3.6 and is treated the same way. |
||
---|---|---|
.. | ||
config.yaml | ||
controlplane.yaml | ||
etcd.yaml | ||
master.yaml | ||
node.yaml | ||
policies.yaml |