All authors

Claude Skills by CyberStrikeus
github.com/CyberStrikeus7,689 skills0 installs16,544 views
- Cis Ocp V180 1.2.16Ensure that the --secure-port argument is not set to 0 (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.17Ensure that the healthz endpoint is protected by RBAC (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.18Ensure that the --audit-log-path argument is set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.19Ensure that the audit logs are forwarded off the cluster for retention (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.2Use https for kubelet connections (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.20Ensure that the maximumRetainedFiles argument is set to 10 or as appropriate (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.21Configure Kubernetes API Server Maximum Audit Log Size (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.22Ensure that the --request-timeout argument is set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.23Ensure that the --service-account-lookup argument is set to true (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.24Ensure that the --service-account-key-file argument is set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.25Ensure that the --etcd-certfile and --etcd-keyfile arguments are set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.26Ensure that the --tls-cert-file and --tls-private-key-file arguments are set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.27Ensure that the --tls-ca-file argument is set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.28Ensure that the --etcd-cafile argument is set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.29Ensure that encryption providers are appropriately configured (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.3Ensure that the kubelet uses certificates to authenticate (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.30Ensure that the API Server only makes use of Strong Cryptographic Ciphers (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.31Ensure that unsupported configuration overrides are not used (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.4Verify that the kubelet certificate authority is set as appropriate (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.5Ensure that the --authorization-mode argument is not set to AlwaysAllow (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.6Verify that RBAC is enabled (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.7Ensure that the APIPriorityAndFairness feature gate is enabled (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.8Ensure that the admission control plugin AlwaysAdmit is not set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.2.9Ensure that the admission control plugin AlwaysPullImages is not set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.3.1Ensure controller manager healthz endpoints protected by RBAC (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.3.2Ensure --use-service-account-credentials set to true (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.3.3Ensure --service-account-private-key-file set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.3.4Ensure --root-ca-file set as appropriate (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.4.1Ensure healthz endpoints for scheduler protected by RBAC (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 1.4.2Verify scheduler API service protected by RBAC (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 2.1Ensure --cert-file and --key-file set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 2.2Ensure --client-cert-auth set to true (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 2.3Ensure --auto-tls not set to true (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 2.4Ensure --peer-cert-file and --peer-key-file set (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 2.5Ensure --peer-client-cert-auth set to true (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 2.6Ensure --peer-auto-tls not set to true (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 2.7Ensure unique Certificate Authority used for etcd (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 3.1.1Client certificate authentication should not be used for users (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 3.2.1Ensure minimal audit policy created (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 3.2.2Ensure audit policy covers key security concerns (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 4.1.1Ensure that the kubelet service file permissions are set to 644 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 4.1.10Ensure that the kubelet configuration file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 4.1.2Ensure that the kubelet service file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 4.1.3If proxy kube proxy configuration file exists ensure permissions are set to 644 or more restrictive (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 4.1.4If proxy kubeconfig file exists ensure ownership is set to root:root (Manual)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 4.1.5Ensure that the --kubeconfig kubelet.conf file permissions are set to 644 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 4.1.6Ensure that the --kubeconfig kubelet.conf file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 4.1.7Ensure that the certificate authorities file permissions are set to 644 or more restrictive (Automated)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 4.1.8Ensure that the client certificate authorities file ownership is set to root:root (Automated)Votes: 0GitHub stars: 2,182
- Cis Ocp V180 4.1.9Ensure that the kubelet --config configuration file has permissions set to 600 or more restrictive (Automated)Votes: 0GitHub stars: 2,182