All authors

Claude Skills by CyberStrikeus
github.com/CyberStrikeus7,689 skills0 installs16,544 views
- Cis K8s V1111 5.4.2Consider external secret storage (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 5.5.1Configure Image Provenance using ImagePolicyWebhook admission controller (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 5.6.1Create administrative boundaries between resources using namespaces (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 5.6.2Ensure that the seccomp profile is set to docker/default in your pod definitions (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 5.6.3Apply Security Context to Your Pods and Containers (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1111 5.6.4The default namespace should not be used (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.1Ensure that the API server pod specification file permissions are set to 600 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.10Ensure that the Container Network Interface file ownership is set to root:root (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.11Ensure that the etcd data directory permissions are set to 700 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.12Ensure that the etcd data directory ownership is set to etcd:etcd (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.13Ensure that the default administrative credential file permissions are set to 600 (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.14Ensure that the default administrative credential file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.15Ensure that the scheduler.conf file permissions are set to 600 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.16Ensure that the scheduler.conf file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.17Ensure that the controller-manager.conf file permissions are set to 600 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.18Ensure that the controller-manager.conf file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.19Ensure that the Kubernetes PKI directory and file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.2Ensure that the API server pod specification file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.20Ensure that the Kubernetes PKI certificate file permissions are set to 644 or more restrictive (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.21Ensure that the Kubernetes PKI key file permissions are set to 600 (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.3Ensure that the controller manager pod specification file permissions are set to 600 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.4Ensure that the controller manager pod specification file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.5Ensure that the scheduler pod specification file permissions are set to 600 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.6Ensure that the scheduler pod specification file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.7Ensure that the etcd pod specification file permissions are set to 600 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.8Ensure that the etcd pod specification file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.1.9Ensure that the Container Network Interface file permissions are set to 600 or more restrictive (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.1Ensure that the --anonymous-auth argument is set to false (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.10Ensure that the admission control plugin AlwaysAdmit is not set (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.11Ensure that the admission control plugin AlwaysPullImages is set (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.12Ensure that the admission control plugin ServiceAccount is set (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.13Ensure that the admission control plugin NamespaceLifecycle is set (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.14Ensure that the admission control plugin NodeRestriction is set (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.15Ensure that the --profiling argument is set to false (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.16Ensure that the --audit-log-path argument is set (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.17Ensure that the --audit-log-maxage argument is set to 30 or as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.18Ensure that the --audit-log-maxbackup argument is set to 10 or as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.19Ensure that the --audit-log-maxsize argument is set to 100 or as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.2Ensure that the --token-auth-file parameter is not set (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.20Ensure that the --request-timeout argument is set as appropriate (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.21Ensure that the --service-account-lookup argument is set to true (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.22Ensure that the --service-account-key-file argument is set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.23Ensure that the --etcd-certfile and --etcd-keyfile arguments are set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.24Ensure that the --tls-cert-file and --tls-private-key-file arguments are set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.25Ensure that the --client-ca-file argument is set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.26Ensure that the --etcd-cafile argument is set as appropriate (Automated)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.27Ensure that the --encryption-provider-config argument is set as appropriate (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.28Ensure that encryption providers are appropriately configured (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.29Ensure that the API Server only makes use of Strong Cryptographic Ciphers (Manual)Votes: 0GitHub stars: 2,182
- Cis K8s V1120 1.2.3Ensure that the DenyServiceExternalIPs is set (Manual)Votes: 0GitHub stars: 2,182