Skip to main content

💼 5.1.2 Minimize access to secrets (Not Scored)

  • ID: /frameworks/cis-gke-v1.0.0/05/01/02

Description​

The Kubernetes API stores secrets, which may be service account tokens for the Kubernetes API or credentials used by workloads in the cluster. Access to these secrets should be restricted to the smallest possible group of users to reduce the risk of privilege escalation.

Similar​

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS GKE v1.8.0 → 💼 4.1.2 Minimize access to secrets (Automated)no data

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance