Skip to content

CIS Kubernetes Benchmark 1.5.1 # 5.2 #7

@saurabhpandit

Description

@saurabhpandit

5.2 Pod Security Policies

  • 5.2.1 Minimize the admission of privileged containers
  • 5.2.2 Minimize the admission of containers wishing to share the host process ID namespace
  • 5.2.3 Minimize the admission of containers wishing to share the host IPC namespace
  • 5.2.4 Minimize the admission of containers wishing to share the host network namespace
  • 5.2.5 Minimize the admission of containers with allowPrivilegeEscalation
  • 5.2.6 Minimize the admission of root containers
  • 5.2.7 Minimize the admission of containers with the NET_RAW capability
  • 5.2.8 Minimize the admission of containers with added capabilities
  • 5.2.9 Minimize the admission of containers with capabilities assigned

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions