All authors

Claude Skills by CyberStrikeus
github.com/CyberStrikeus7,689 skills0 installs16,544 views
- Cis Docker 5.31Ensure that the host's user namespaces are not sharedVotes: 0GitHub stars: 2,182
- Cis Docker 5.32Ensure that the Docker socket is not mounted inside any containersVotes: 0GitHub stars: 2,182
- Cis Docker 5.4Ensure that Linux kernel capabilities are restricted within containersVotes: 0GitHub stars: 2,182
- Cis Docker 5.5Ensure that privileged containers are not usedVotes: 0GitHub stars: 2,182
- Cis Docker 5.6Ensure sensitive host system directories are not mounted on containersVotes: 0GitHub stars: 2,182
- Cis Docker 5.7Ensure sshd is not run within containersVotes: 0GitHub stars: 2,182
- Cis Docker 5.8Ensure privileged ports are not mapped within containersVotes: 0GitHub stars: 2,182
- Cis Docker 5.9Ensure that only needed ports are open on the containerVotes: 0GitHub stars: 2,182
- Cis Docker 6.1Ensure that image sprawl is avoidedVotes: 0GitHub stars: 2,182
- Cis Docker 6.2Ensure that container sprawl is avoidedVotes: 0GitHub stars: 2,182
- Cis Docker 7.1Ensure that the minimum number of manager nodes have been created in a swarmVotes: 0GitHub stars: 2,182
- Cis Docker 7.2Ensure that swarm services are bound to a specific host interfaceVotes: 0GitHub stars: 2,182
- Cis Docker 7.3Ensure that all Docker swarm overlay networks are encryptedVotes: 0GitHub stars: 2,182
- Cis Docker 7.4Ensure that Docker's secret management commands are used for managing secrets in a swarm clusterVotes: 0GitHub stars: 2,182
- Cis Docker 7.5Ensure that swarm manager is run in auto-lock modeVotes: 0GitHub stars: 2,182
- Cis Docker 7.6Ensure that the swarm manager auto-lock key is rotated periodicallyVotes: 0GitHub stars: 2,182
- Cis Docker 7.7Ensure that node certificates are rotated as appropriateVotes: 0GitHub stars: 2,182
- Cis Docker 7.8Ensure that CA certificates are rotated as appropriateVotes: 0GitHub stars: 2,182
- Cis Docker 7.9Ensure that management plane traffic is separated from data plane trafficVotes: 0GitHub stars: 2,182
- Cis Eks V160 2.1.1Enable audit Logs (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 2.1.2Ensure audit logs are collected and managed (Manual)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.1.1Ensure that the kubeconfig file permissions are set to 644 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.1.2Ensure that the kubelet kubeconfig file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.1.3Ensure that the kubelet configuration file has permissions set to 644 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.1.4Ensure that the kubelet configuration file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.2.1Ensure that the Anonymous Auth is Not Enabled (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.2.2Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.2.3Ensure that a Client CA File is Configured (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.2.4Ensure that the --read-only-port is disabled (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.2.5Ensure that the --streaming-connection-idle-timeout argument is not set to 0 (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.2.6Ensure that the --make-iptables-util-chains argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.2.7Ensure that the --eventRecordQPS argument is set to 0 or a level which ensures appropriate event capture (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.2.8Ensure that the --rotate-certificates argument is not present or is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 3.2.9Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.1.1Ensure that the cluster-admin role is only used where required (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.1.2Minimize access to secrets (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.1.3Minimize wildcard use in Roles and ClusterRoles (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.1.4Minimize access to create pods (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.1.5Ensure that default service accounts are not actively used (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.1.6Ensure that Service Account Tokens are only mounted where necessary (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.1.7Cluster Access Manager API to streamline and enhance the management of access controls within EKS clusters (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.1.8Limit use of the Bind, Impersonate and Escalate permissions in the Kubernetes cluster (Manual)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.2.1Minimize the admission of privileged containers (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.2.2Minimize the admission of containers wishing to share the host process ID namespace (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.2.3Minimize the admission of containers wishing to share the host IPC namespace (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.2.4Minimize the admission of containers wishing to share the host network namespace (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.2.5Minimize the admission of containers with allowPrivilegeEscalation (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.3.1Ensure CNI plugin supports network policies (Manual)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.3.2Ensure that all Namespaces have Network Policies defined (Automated)Votes: 0GitHub stars: 2,182
- Cis Eks V160 4.4.1Prefer using secrets as files over secrets as environment variables (Automated)Votes: 0GitHub stars: 2,182