Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Support CIS kubernetes CIS-1.10 for k8s v1.28 - v1.31 #1693

Closed
afdesk opened this issue Sep 27, 2024 Discussed in #1692 · 3 comments
Closed

Support CIS kubernetes CIS-1.10 for k8s v1.28 - v1.31 #1693

afdesk opened this issue Sep 27, 2024 Discussed in #1692 · 3 comments

Comments

@afdesk
Copy link
Collaborator

afdesk commented Sep 27, 2024

Description

CIS Kubernetes Benchmark v1.10.0 (targets k8s v1.28 - v1.31) has been released in CIS Workbench.

Discussed in #1692

@andypitcher
Copy link
Contributor

andypitcher commented Dec 11, 2024

CIS Kubernetes Benchmark CIS-1.10

CIS Workbench: https://workbench.cisecurity.org/benchmarks/17568
K8s version: v1.28 to v1.31
Changelog details in CIS Workbench:
All the checks remain the same as CIS-1.9, only these were changed:

  • 5.2.2 to 5.2.6 and 5.2.9 in policies.yaml have been given a dedicated audit, while remaining Manual. Note, the audits are not directly tied to the recommendation (check admission policy), but proactively verifying the running configuration for each container.
  • 5.1.11 in policies.yaml typo correction in title/remediation.
  • 1.2.29 in master.yaml update cipher list to remove insecure ones.

@andypitcher
Copy link
Contributor

@afdesk this issue can be now closed, thanks for reviewing !

@afdesk afdesk closed this as completed Jan 15, 2025
@afdesk
Copy link
Collaborator Author

afdesk commented Jan 15, 2025

resolved #1753

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants