πΌ [EKS.1] EKS cluster endpoints should not be publicly accessible
- Contextual name: πΌ [EKS.1] EKS cluster endpoints should not be publicly accessible
- ID:
/frameworks/aws-fsbp-v1.0.0/eks/01
- Located in: πΌ Elastic Kubernetes Service (EKS)
Descriptionβ
When you create a new cluster, Amazon EKS creates an endpoint for the managed Kubernetes API server that you use to communicate with your cluster. By default, this API server endpoint is publicly available to the internet. Access to the API server is secured using a combination of AWS Identity and Access Management (IAM) and native Kubernetes Role Based Access Control (RBAC). By removing public access to the endpoint, you can avoid unintentional exposure and access to your cluster.
Similarβ
- AWS Security Hub
- Internal
- ID:
dec-c-e997b009
- ID:
Similar Sections (Give Policies To)β
Sub Sectionsβ
Section | Sub Sections | Internal Rules | Policies | Flags |
---|