Skip to content
GitLab
Projects Groups Snippets
  • /
  • Help
    • Help
    • Support
    • Community forum
    • Submit feedback
  • Sign in
  • magnum magnum
  • Project information
    • Project information
    • Activity
    • Labels
    • Members
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributors
    • Graph
    • Compare
    • Locked Files
  • Issues 10
    • Issues 10
    • List
    • Boards
    • Service Desk
    • Milestones
    • Iterations
  • Jira
    • Jira
  • Merge requests 4
    • Merge requests 4
  • CI/CD
    • CI/CD
    • Pipelines
    • Jobs
    • Schedules
  • Deployments
    • Deployments
    • Environments
    • Releases
  • Monitor
    • Monitor
    • Incidents
  • Analytics
    • Analytics
    • Value stream
    • CI/CD
    • Code review
    • Issue
    • Repository
  • Activity
  • Graph
  • Create a new issue
  • Jobs
  • Commits
  • Issue Boards
Collapse sidebar
  • kuberneteskubernetes
  • magnummagnum
  • Merge requests
  • !214

Add multiple kube-bench suggested modifications

  • Review changes

  • Download
  • Email patches
  • Plain diff
Merged Diogo Filipe Tomas Guerra requested to merge kube-bench-updates into cern/train Aug 29, 2022
  • Overview 3
  • Commits 4
  • Pipelines 0
  • Changes 2

All commits come from upstream contributed merge requests:

  • 5ca33ee9 [cern] Fix kube-bench 1.2.1, 1.2.23, 1.3.1.
    • Set shorter apiserver timeout (from 60s to 10s)
    • decrease number of terminated pods to GC
    • Disallow anonymous auth
  • ed7b8a3c [cern] Fix kube-bench 1.2.32 and 4.2.13
    • set TLS cypher-suits to use on kubelet and apiserver
  • d6f950f7 [cern] Ensure kube-apiserver TLS connection to etcd server
    • set keys and certificates to use for connection with etcd server
  • 303e6777 [cern] Add kube-bench disable profilling
    • disable profiling on kubernetes control plane components

Closes: https://gitlab.cern.ch/kubernetes/project/-/issues/251

Edited Sep 14, 2022 by Diogo Filipe Tomas Guerra
Assignee
Assign to
Reviewers
Request review from
Time tracking
Source branch: kube-bench-updates