Skip to main content

💼 6.1.3 Minimize cluster access to read-only for GCR (Scored)

  • ID: /frameworks/cis-gke-v1.0.0/06/01/03

Description​

Configure the Cluster Service Account with Storage Object Viewer Role to only allow readonly access to GCR.

Similar​

Similar Sections (Give Policies To)​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS GKE v1.8.0 → 💼 5.1.3 Minimize cluster access to read-only for Container Image repositories (Manual)no data

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance