Passed
Failed
Other
| Rule ID | Result | Severity | Message |
|---|---|---|---|
control_plane_api_server_anonymous_auth |
PASS | MEDIUM | - |
control_plane_api_server_basic_auth |
PASS | MEDIUM | - |
control_plane_api_server_token_auth |
PASS | HIGH | - |
control_plane_api_server_kubelet_https |
PASS | HIGH | - |
control_plane_api_server_kubelet_client_certificate |
PASS | MEDIUM | - |
control_plane_api_server_kubelet_certificate_authority |
PASS | MEDIUM | - |
control_plane_api_server_authorization_mode |
PASS | MEDIUM | - |
control_plane_api_server_authorization_mode_node |
PASS | HIGH | - |
control_plane_api_server_authorization_mode_rbac |
PASS | HIGH | - |
control_plane_api_server_admission_control_plugin_always_admit |
PASS | HIGH | - |
control_plane_api_server_admission_control_plugin_always_pull_images |
PASS | HIGH | - |
control_plane_api_server_admission_control_plugin_security_context_deny |
PASS | MEDIUM | - |
control_plane_api_server_admission_control_plugin_service_account |
PASS | LOW | - |
control_plane_api_server_admission_control_plugin_namespace_lifecycle |
PASS | MEDIUM | - |
control_plane_api_server_admission_control_plugin_pod_security_policy |
PASS | MEDIUM | - |
control_plane_api_server_admission_control_plugin_node_restriction |
FAIL | HIGH | Check failed: control_plane_api_server_admission_control_plugin_node_restriction |
control_plane_api_server_insecure_port |
PASS | LOW | - |
control_plane_api_server_secure_port |
PASS | HIGH | - |
control_plane_api_server_profiling |
PASS | LOW | - |
control_plane_api_server_audit_log_path |
FAIL | MEDIUM | Check failed: control_plane_api_server_audit_log_path |
control_plane_api_server_audit_log_maxage |
PASS | HIGH | - |
control_plane_api_server_audit_log_maxbackup |
PASS | LOW | - |
control_plane_api_server_audit_log_maxsize |
PASS | MEDIUM | - |
control_plane_api_server_request_timeout |
PASS | HIGH | - |
control_plane_api_server_service_account_lookup |
PASS | MEDIUM | - |
control_plane_api_server_service_account_key_file |
FAIL | LOW | Check failed: control_plane_api_server_service_account_key_file |
control_plane_api_server_etcd_certfile |
PASS | LOW | - |
control_plane_api_server_tls_cert_file |
FAIL | LOW | Check failed: control_plane_api_server_tls_cert_file |
control_plane_api_server_client_ca_file |
PASS | LOW | - |
control_plane_api_server_etcd_cafile |
PASS | HIGH | - |
control_plane_api_server_encryption_provider_config |
PASS | MEDIUM | - |
control_plane_api_server_tls_cipher_suites |
PASS | LOW | - |
control_plane_scheduler_profiling |
PASS | MEDIUM | - |
control_plane_scheduler_bind_address |
PASS | HIGH | - |
control_plane_controller_manager_terminated_pod_gc_threshold |
PASS | MEDIUM | - |
control_plane_controller_manager_profiling |
FAIL | HIGH | Check failed: control_plane_controller_manager_profiling |
control_plane_controller_manager_use_service_account_credentials |
FAIL | LOW | Check failed: control_plane_controller_manager_use_service_account_credentials |
control_plane_controller_manager_service_account_private_key_file |
PASS | LOW | - |
control_plane_controller_manager_root_ca_file |
PASS | HIGH | - |
control_plane_controller_manager_feature_gates_rotate_kubelet_server_certificate |
FAIL | LOW | Check failed: control_plane_controller_manager_feature_gates_rotate_kubelet_server_certificate |
control_plane_controller_manager_bind_address |
PASS | LOW | - |
worker_node_kubelet_anonymous_auth |
FAIL | MEDIUM | Check failed: worker_node_kubelet_anonymous_auth |
worker_node_kubelet_authorization_mode |
PASS | LOW | - |
worker_node_kubelet_client_ca_file |
PASS | MEDIUM | - |
worker_node_kubelet_read_only_port |
PASS | LOW | - |
worker_node_kubelet_streaming_connection_idle_timeout |
PASS | MEDIUM | - |
worker_node_kubelet_protect_kernel_defaults |
PASS | HIGH | - |
worker_node_kubelet_make_iptables_util_chains |
PASS | LOW | - |
worker_node_kubelet_hostname_override |
PASS | LOW | - |
worker_node_kubelet_event_qps |
PASS | LOW | - |
worker_node_kubelet_tls_cert_file |
PASS | MEDIUM | - |
worker_node_kubelet_rotate_certificates |
PASS | HIGH | - |
etcd_cert_file |
PASS | MEDIUM | - |
etcd_client_cert_auth |
PASS | LOW | - |
etcd_auto_tls |
PASS | HIGH | - |
etcd_peer_cert_file |
PASS | LOW | - |
etcd_peer_client_cert_auth |
PASS | LOW | - |
etcd_peer_auto_tls |
PASS | HIGH | - |
etcd_unique_ca |
PASS | HIGH | - |
network_policy_enabled |
FAIL | MEDIUM | Check failed: network_policy_enabled |
pod_security_policy_enabled |
PASS | LOW | - |