SV-242431r1043178_rule
V-242431
SRG-APP-000219-CTR-000550
CNTR-K8-001530
CAT II
10
Edit the Kubernetes API Server manifest file in the /etc/kubernetes/manifests directory on the Kubernetes Control Plane.
Set the value of "--etcd-keyfile" to the certificate to be used for communication with etcd.
Change to the /etc/kubernetes/manifests directory on the Kubernetes Control Plane. Run the command:
grep -i etcd-keyfile *
If the setting "--etcd-keyfile" is not configured in the Kubernetes API Server manifest file, this is a finding.
V-242431
False
CNTR-K8-001530
Change to the /etc/kubernetes/manifests directory on the Kubernetes Control Plane. Run the command:
grep -i etcd-keyfile *
If the setting "--etcd-keyfile" is not configured in the Kubernetes API Server manifest file, this is a finding.
M
5376