- AWS Audit
- Kubernetes Audit
Checks performed
- EKS Cluster Should Allow Inbound Traffic only from Port 443(HTTPS)
- EKS Clusters Should Have Logging Enabled
- EKS Clusters Should Use The Latest Stable Version of Kubernetes
- Endpoints Should Not Be Publicly Accessible
- EKS Clusters Should Have High Availability
- ECR Repositories Should Be Private
- ECR Repository Tag Should Be Immutable
- ECR Image Repositories Should Have A Lifecycle Policy Attached
- Image Vulnerability Scanning Should Be Enabled For Amazon ECR