💼 4.1.2 Minimize access to secrets (Automated)
- ID:
/frameworks/cis-gke-v1.8.0/04/01/02
Description​
The Kubernetes API stores secrets, which may be service account tokens for the Kubernetes API or credentials used by workloads in the cluster. Access to these secrets should be restricted to the smallest possible group of users to reduce the risk of privilege escalation.
Similar​
- Sections
/frameworks/cis-gke-v1.0.0/05/01/02
Similar Sections (Take Policies From)​
Sub Sections​
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|