Evaluates whether the container auditing feature is enabled for each Container Service for Kubernetes (ACK) cluster.
Scenario
The container auditing feature allows you to audit the commands that different users run in containers.
Risk level
Default risk level: high.
You can change the risk level when you apply this rule.
Compliance evaluation logic
An ACK cluster is evaluated as compliant if the container auditing feature is enabled.
Rule details
|
Item |
Description |
|
Rule name |
ack-cluster-advanced-audit-enabled |
|
Rule ID |
|
|
Tag |
ACK and Cluster |
|
Automatic remediation |
Not supported |
|
Trigger type |
Periodic execution |
|
Evaluation frequency |
Every 24 hours |
|
Supported resource type |
ACS::ACK::Cluster |
|
Input parameter |
None |
Non-compliance remediation
Enable the container auditing feature for all ACK clusters. For more information, see Use the container auditing feature.