You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Deployment adcs-sim-deployment in namespace adcs-issuer
metadataAndInstanceMismatched 😬 Warning
Reliability - Label app.kubernetes.io/instance must match metadata.name
missingPodDisruptionBudget 😬 Warning
Reliability - Should have a PodDisruptionBudget
deploymentMissingReplicas 😬 Warning
Reliability - Only one replica is scheduled
automountServiceAccountToken 😬 Warning
Security - The ServiceAccount will be automounted
missingNetworkPolicy 😬 Warning
Security - A NetworkPolicy should match pod labels and contain applied egress and ingress rules
priorityClassNotSet 😬 Warning
Reliability - Priority class should be set
topologySpreadConstraint 😬 Warning
Reliability - Pod should be configured with a valid topology spread constraint
Container manager
runAsRootAllowed ❌ Danger
Security - Should not be allowed to run as root
linuxHardening 😬 Warning
Security - Use one of AppArmor, Seccomp, SELinux, or dropping Linux Capabilities to restrict containers using unwanted privileges
notReadOnlyRootFilesystem 😬 Warning
Security - Filesystem should be read only
privilegeEscalationAllowed ❌ Danger
Security - Privilege escalation should not be allowed
insecureCapabilities 😬 Warning
Security - Container should not have insecure capabilities
livenessProbeMissing 😬 Warning
Reliability - Liveness probe should be configured
readinessProbeMissing 😬 Warning
Reliability - Readiness probe should be configured
ConfigMap adcs-sim-configmap in namespace adcs-issuer
sensitiveConfigmapContent ❌ Danger
Security - Potentially sensitive content is detected in the ConfigMap keys or values
The text was updated successfully, but these errors were encountered:
TODO
Hardening deployment of adcs simulator
Starting point
Grade: D
Score: 65%
The text was updated successfully, but these errors were encountered: