Skip to content

Kubernetes Security Assesment: evaluate superficial health check #1717

@neolit123

Description

@neolit123

https://github.com/kubernetes/community/blob/master/wg-security-audit/findings/Kubernetes%20Final%20Report.pdf

search for:
Superficial health check provide false sense of safety
Finding ID: TOB-K8S-009

the TL;DR is that the document argues that our health check only checks API server and should check the rest of the CP components too.

Metadata

Metadata

Assignees

Labels

area/securitykind/featureCategorizes issue or PR as related to a new feature.lifecycle/activeIndicates that an issue or PR is actively being worked on by a contributor.priority/backlogHigher priority than priority/awaiting-more-evidence.

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions