Skip to main content

💼 4.1.2 Minimize access to secrets (Automated)

  • ID: /frameworks/cis-gke-v1.8.0/04/01/02

Description​

The Kubernetes API stores secrets, which may be service account tokens for the Kubernetes API or credentials used by workloads in the cluster. Access to these secrets should be restricted to the smallest possible group of users to reduce the risk of privilege escalation.

Similar​

  • Sections
    • /frameworks/cis-gke-v1.0.0/05/01/02

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS GKE v1.0.0 → 💼 5.1.2 Minimize access to secrets (Not Scored)no data

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance