当前位置:网站首页>CIS基准测试工具kube-bench使用
CIS基准测试工具kube-bench使用
2022-07-05 23:06:00 【识途老码】
CIS基准测试工具kube-bench使用
CIS安全基准
CIS官网: https://www.cisecurity.org/
K8S CIS基准: https://www.cisecurity.org/benchmark/kubernetes
CIS基准测试工具kube-bench
项目地址: https://github.com/aquasecurity/kube-bench
kube-bench基本使用
# 查看kube-bech的使用参数
kube-bench --help
测试项目配置文件
/etc/kube-bench/cfg/
是kube-bench的项目测试配置文件的目录.
测试master
kube-apiserver配置
参考地址: https://kubernetes.io/zh-cn/docs/reference/command-line-tools-reference/kube-apiserver/kube-apiserver
配置文件:/etc/kubernetes/manifests/kube-apiserver.yaml
# 对master进行测试
kube-bench run -s master
# 对master进行测试并只显示FAIL
kube-bench master|grep FAIL
测试node
Kubelet配置
参考地址: https://kubernetes.io/zh-cn/docs/reference/command-line-tools-reference/kubelet/
Kubelet
配置文件:/etc/kubernetes/kubelet.conf
# 对node进行测试
kube-bench run -s node
测试ETCD
# 对etcd进行测试
kube-bench run -s etcd
边栏推荐
- 并查集实践
- 2.13 summary
- Calculating the number of daffodils in C language
- Initial experience | purchase and activate typora software
- Three. Js-01 getting started
- Three.js-01 入门
- Use the rewrite rule to rewrite all accesses to the a domain name to the B domain name
- Idea rundashboard window configuration
- 二叉树递归套路总结
- Rethinking about MySQL query optimization
猜你喜欢
数据库基础知识(面试)
The method and principle of viewing the last modification time of the web page
3:第一章:认识JVM规范2:JVM规范,简介;
Neural structured learning 4 antagonistic learning for image classification
2:第一章:认识JVM规范1:JVM简介;
Go语言实现原理——Map实现原理
From the perspective of quantitative genetics, why do you get the bride price when you get married
2022 R2 mobile pressure vessel filling review simulation examination and R2 mobile pressure vessel filling examination questions
How to design API return code (error code)?
Douban scoring applet Part-2
随机推荐
Krypton Factor purple book chapter 7 violent solution
LeetCode——Add Binary
golang代码检查工具
UVA11294-Wedding(2-SAT)
【经典控制理论】自控实验总结
查看网页最后修改时间方法以及原理简介
利用LNMP实现wordpress站点搭建
leecode-学习笔记
Registration of Electrical Engineering (elementary) examination in 2022 and the latest analysis of Electrical Engineering (elementary)
视频标准二三事
[screen recording] how to record in the OBS area
Openresty ngx Lua regular expression
Three.JS VR看房
LeetCode145. Post order traversal of binary tree (three methods of recursion and iteration)
Creative mode 1 - single case mode
How to design API return code (error code)?
Debian 10 installation configuration
2:第一章:认识JVM规范1:JVM简介;
两数之和、三数之和(排序+双指针)
Getting started stm32--gpio (running lantern) (nanny level)