No profile (default benchmark)
Rules and Groups employed by this XCCDF Profile
-
SRG-APP-000233-CTR-000585
Group -
Kubernetes Kubelet must enable kernel protection.
System kernel is responsible for memory, disk, and task management. The kernel provides a gateway between the system hardware and software. Kubernetes requires kernel access to allocate resources t...Rule High Severity -
SRG-APP-000342-CTR-000775
Group -
The Kubernetes API server must have the ValidatingAdmissionWebhook enabled.
Enabling the admissions webhook allows for Kubernetes to apply policies against objects that are to be created, read, updated, or deleted. By applying a pod security policy, control can be given to...Rule High Severity -
SRG-APP-000342-CTR-000775
Group
Node 2
The content of the drawer really is up to you. It could have form fields, definition lists, text lists, labels, charts, progress bars, etc. Spacing recommendation is 24px margins. You can put tabs in here, and can also make the drawer scrollable.
Capacity
Modules