Skip to main content

💼 4.4.2 Consider external secret storage (Manual)

  • ID: /frameworks/cis-gke-v1.8.0/04/04/02

Description​

Consider the use of an external secrets storage and management system instead of using Kubernetes Secrets directly, if more complex secret management is required. Ensure the solution requires authentication to access secrets, has auditing of access to and use of secrets, and encrypts secrets. Some solutions also make it easier to rotate secrets.

Similar​

  • Sections
    • /frameworks/cis-gke-v1.0.0/05/04/02

Similar Sections (Take Policies From)​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance
💼 CIS GKE v1.0.0 → 💼 5.4.2 Consider external secret storage (Not Scored)no data

Sub Sections​

SectionSub SectionsInternal RulesPoliciesFlagsCompliance