All authors

Claude Skills by CyberStrikeus
github.com/CyberStrikeus7,689 skills0 installs16,544 views
- Cis K8s V1111 1.2.16Ensure that the --audit-log-path argument is set (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.17Ensure that the --audit-log-maxage argument is set to 30 or as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.18Ensure that the --audit-log-maxbackup argument is set to 10 or as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.19Ensure that the --audit-log-maxsize argument is set to 100 or as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.2Ensure that the --token-auth-file parameter is not set (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.20Ensure that the --request-timeout argument is set as appropriate (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.21Ensure that the --service-account-lookup argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.22Ensure that the --service-account-key-file argument is set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.23Ensure that the --etcd-certfile and --etcd-keyfile arguments are set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.24Ensure that the --tls-cert-file and --tls-private-key-file arguments are set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.25Ensure that the --client-ca-file argument is set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.26Ensure that the --etcd-cafile argument is set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.27Ensure that the --encryption-provider-config argument is set as appropriate (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.28Ensure that encryption providers are appropriately configured (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.29Ensure that the API Server only makes use of Strong Cryptographic Ciphers (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.3Ensure that the DenyServiceExternalIPs is set (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.30Ensure that the --service-account-extend-token-expiration parameter is set to false (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.4Ensure that the --kubelet-client-certificate and --kubelet-client-key arguments are set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.5Ensure that the --kubelet-certificate-authority argument is set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.6Ensure that the --authorization-mode argument is not set to AlwaysAllow (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.7Ensure that the --authorization-mode argument includes Node (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.8Ensure that the --authorization-mode argument includes RBAC (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.2.9Ensure that the admission control plugin EventRateLimit is set (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.3.1Ensure that the --terminated-pod-gc-threshold argument is set as appropriate (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.3.2Ensure that the --profiling argument is set to false (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.3.3Ensure that the --use-service-account-credentials argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.3.4Ensure that the --service-account-private-key-file argument is set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.3.5Ensure that the --root-ca-file argument is set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.3.6Ensure that the RotateKubeletServerCertificate argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.3.7Ensure that the --bind-address argument is set to 127.0.0.1 (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.4.1Ensure that the --profiling argument is set to false (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 1.4.2Ensure that the --bind-address argument is set to 127.0.0.1 (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 2.1Ensure that the --cert-file and --key-file arguments are set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 2.2Ensure that the --cert-file and --key-file arguments are set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 2.3Ensure that the --client-cert-auth argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 2.4Ensure that the --auto-tls argument is not set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 2.5Ensure that the --peer-cert-file and --peer-key-file arguments are set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 2.6Ensure that the --peer-client-cert-auth argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 2.7Ensure that the --peer-auto-tls argument is not set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 2.8Ensure that a unique Certificate Authority is used for etcd (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 3.1.1Client certificate authentication should not be used for users (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 3.1.2Service account token authentication should not be used for users (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 3.1.3Bootstrap token authentication should not be used for users (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 3.2.1Ensure that a minimal audit policy is created (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 3.2.2Ensure that the audit policy covers key security concerns (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 4.1.1Ensure that the kubelet service file permissions are set to 600 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 4.1.10If the kubelet config.yaml configuration file is being used validate file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 4.1.2Ensure that the kubelet service file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 4.1.3If proxy kubeconfig file exists ensure permissions are set to 600 or more restrictive (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 4.1.4If proxy kubeconfig file exists ensure ownership is set to root:root (Manual)Votes: 0GitHub stars: 2,182