SV-242401r712559_rule
V-242401
SRG-APP-000092-CTR-000165
CNTR-K8-000600
CAT II
10
Edit the Kubernetes API Server manifest and set "--audit-policy-file" to the audit policy file.
Note: If the API server is running as a Pod, then the manifest will also need to be updated to mount the host system filesystem where the audit policy file resides.
Change to the /etc/kubernetes/manifests directory on the Kubernetes Master Node. Run the command:
grep -i audit-policy-file *
If the audit-policy-file is not set, this is a finding.
V-242401
False
CNTR-K8-000600
Change to the /etc/kubernetes/manifests directory on the Kubernetes Master Node. Run the command:
grep -i audit-policy-file *
If the audit-policy-file is not set, this is a finding.
M
5376