kube-bench
kube-bench copied to clipboard
Add latest CIS benchmarks
I copied latest AKS(1.0.0), EKS(1.2.0), GKE(1.2.0) config files and adjusted them to match latest published CIS benchmarks (AKS 1.3, EKS 1.3, GKE 1.4).
EKS changes:
- 4.5 was removed (was previously empty), 4.6.* became 4.5.*
- 3.2.6 was removed and everything shifted
GKE changes:
- 3.2.6 was removed and everything shifted
- previously 3.2.9, now is 3.2.9 and its about event record qps. 0 qps can ddos cluster, so 5 or higher is recommended.
- 5.5.4 added “When creating New Clusters - ” prefix to rule name
AKS changes:
- 3.2.6 was removed and everything shifted in 3.2.*
@damejeras lets wait for @mozillazg review
@damejeras please rebase your branch with upstream
I will complete the review before next Monday.
@damejeras LGTM. Would you please fix the linter error? Thanks!
@damejeras ping~
Hello, Any news on this ? I have to add since that PR, gke 1.5.0 got out.
LGTM
@damejeras @mozillazg hi guys! if this PR is still OK, I can take a look and fix linter errors. wdyt?
@damejeras @mozillazg hi guys! if this PR is still OK, I can take a look and fix linter errors. wdyt?
@afdesk It's ok to continue.
@damejeras it seems I have no permissions to fix it. Could you update the PR? thanks for your contribution!