Control: Pod containers argument kubelet authorization mode should not be set to 'always allow'
Description
This check ensures that the container in the Pod has argument kubelet authorization mode not set to 'always allow'.
Usage
Run the control in your terminal:
powerpipe control run kubernetes_compliance.control.pod_container_argument_kubelet_authorization_mode_no_always_allow
Snapshot and share results via Turbot Pipes:
powerpipe loginpowerpipe control run kubernetes_compliance.control.pod_container_argument_kubelet_authorization_mode_no_always_allow --share
SQL
This control uses a named query:
pod_container_argument_kubelet_authorization_mode_no_always_allow