aquasecurity / kube-bench

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark
Apache License 2.0
6.97k stars 1.21k forks source link

FIXING RKE CIS CHECKS #1679

Closed sm171190 closed 1 week ago

sm171190 commented 2 weeks ago

In this change we are making 2 changes:

  1. adding the check Type as manual for some manual checks for which the type was missing or incorrect
  2. Some checks are removed as they are not applicable for an RKE2 cluster
  3. checks 1.3.6 and 4.2.12 chekc whether the cluster has been configured with the flags to rotate TLS certificates. However, RKE Internally handles certificate rotation : https://github.com/rancher/dashboard/issues/4485
CLAassistant commented 2 weeks ago

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.


Saurabh Misra seems not to be a GitHub user. You need a GitHub account to be able to sign the CLA. If you have already a GitHub account, please add the email address used for this commit to your account.
You have signed the CLA already but the status is still pending? Let us recheck it.