Skip to content

Latest commit

 

History

History
19 lines (13 loc) · 740 Bytes

cluster-least-privilege.md

File metadata and controls

19 lines (13 loc) · 740 Bytes

CloudSploit

GOOGLE / Kubernetes / Cluster Least Privilege

Quick Info

Plugin Title Cluster Least Privilege
Cloud GOOGLE
Category Kubernetes
Description Ensures Kubernetes clusters are created with limited service account access scopes
More Info Kubernetes service accounts should be limited in scope to the services necessary to operate the clusters.
GOOGLE Link https://cloud.google.com/compute/docs/access/service-accounts
Recommended Action Ensure that all Kubernetes clusters are created with limited access scope.

Detailed Remediation Steps