All authors
CyberStrikeus avatar

Claude Skills by CyberStrikeus

github.com/CyberStrikeus
1,315 skillsA× 1,256B× 57D× 20 installs317 views
Cis Apache 8.4A

Ensure ETag Response Header Fields Do Not Include Inodes

securitygonode
0
291
Cis Apache 9.1A

Ensure the TimeOut Is Set Properly

securitygosecurity
0
291
Cis Apache 9.2A

Ensure KeepAlive Is Enabled

securitygosecurity
0
291
Cis Apache 9.3A

Ensure MaxKeepAliveRequests Is Set Properly

securitygosecurity
0
291
Cis Ocp V170 5.2.10A

Minimize access to privileged Security Context Constraints (Manual)

securitygobash
0
291
Cis Ocp V170 5.2.2A

Minimize admission of containers sharing host process ID namespace (Manual)

securitygobash
0
291
Cis Ocp V170 5.2.3A

Minimize admission of containers sharing host IPC namespace (Manual)

securitygobash
0
291
Cis Ocp V170 5.2.4A

Minimize admission of containers sharing host network namespace (Manual)

securitygobash
0
291
Cis Ocp V170 5.2.5A

Minimize admission of containers with allowPrivilegeEscalation (Manual)

securitygobash
0
291
Cis Ocp V170 5.2.6A

Minimize admission of root containers (Manual)

securitygobash
0
291
Cis Ocp V170 5.2.7A

Minimize admission of containers with NET_RAW capability (Manual)

securityrustgo
0
291
Cis Ocp V170 5.2.8A

Minimize admission of containers with added capabilities (Manual)

securityrustgo
0
291
Cis Ocp V170 5.2.9A

Minimize admission of containers with capabilities assigned (Manual)

securityrustgo
0
291
Cis Ocp V170 5.3.1A

Ensure CNI in use supports Network Policies (Manual)

securitygonode
0
291
Cis Ocp V170 5.3.2A

Ensure all Namespaces have Network Policies defined (Manual)

securitygobash
0
291
Cis Ocp V170 5.4.1A

Prefer using secrets as files over environment variables (Manual)

securitygobash
0
291
Cis Ocp V170 5.4.2A

Consider external secret storage (Manual)

securitygokubernetes
0
291
Cis Ocp V170 5.5.1A

Configure Image Provenance using image controller config (Manual)

securityrustgo
0
291
Cis Ocp V170 5.7.1A

Create administrative boundaries using namespaces (Manual)

securitygobash
0
291
Cis Ocp V170 5.7.2A

Ensure seccomp profile set to docker/default (Manual)

securitygobash
0
291
Cis Ocp V170 5.7.3A

Apply Security Context to Your Pods and Containers (Manual)

securitygobash
0
291
Cis Ocp V170 5.7.4A

The default namespace should not be used (Manual)

securityrustgo
0
291
Cis Ocp V180 1.1.1A

Ensure that the API server pod specification file permissions are set to 600 or more restrictive (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.10A

Ensure that the Container Network Interface file ownership is set to root:root (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.11A

Ensure that the etcd data directory permissions are set to 700 or more restrictive (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.12A

Ensure that the etcd data directory ownership is set to etcd:etcd (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.13A

Ensure that the kubeconfig file permissions are set to 600 or more restrictive (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.14A

Ensure that the kubeconfig file ownership is set to root:root (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.15A

Ensure that the Scheduler kubeconfig file permissions are set to 600 or more restrictive (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.16A

Ensure that the Scheduler kubeconfig file ownership is set to root:root (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.17A

Ensure that the Controller Manager kubeconfig file permissions are set to 600 or more restrictive (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.18A

Ensure that the Controller Manager kubeconfig file ownership is set to root:root (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.19A

Ensure that the OpenShift PKI directory and file ownership is set to root:root (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.2A

Ensure that the API server pod specification file ownership is set to root:root (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.20A

Ensure that the OpenShift PKI certificate file permissions are set to 600 or more restrictive (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.21A

Ensure that the OpenShift PKI key file permissions are set to 600 (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.3A

Ensure that the controller manager pod specification file permissions are set to 600 or more restrictive (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.4A

Ensure that the controller manager pod specification file ownership is set to root:root (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.5A

Ensure that the scheduler pod specification file permissions are set to 600 or more restrictive (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.6A

Ensure that the scheduler pod specification file ownership is set to root:root (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.7A

Ensure that the etcd pod specification file permissions are set to 600 or more restrictive (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.8A

Ensure that the etcd pod specification file ownership is set to root:root (Manual)

securitygobash
0
291
Cis Ocp V180 1.1.9A

Ensure that the Container Network Interface file permissions are set to 600 or more restrictive (Manual)

securitygobash
0
291
Cis Ocp V180 1.2.1A

Ensure that anonymous requests are authorized (Manual)

securitygobash
0
291
Cis Ocp V180 1.2.10A

Ensure that the admission control plugin ServiceAccount is set (Manual)

securitygobash
0
291
Cis Ocp V180 1.2.11A

Ensure that the admission control plugin NamespaceLifecycle is set (Manual)

securitygobash
0
291
Cis Ocp V180 1.2.12A

Ensure that the admission control plugin SecurityContextConstraint is set (Manual)

securitygobash
0
291
Cis Ocp V180 1.2.13A

Ensure that the admission control plugin NodeRestriction is set (Manual)

securitygobash
0
291
Cis Ocp V180 1.2.14A

Ensure that the --insecure-bind-address argument is not set (Manual)

securitygobash
0
291
Cis Ocp V180 1.2.15A

Ensure that the --insecure-port argument is set to 0 (Manual)

securitygobash
0
291