turbot/kubernetes_compliance

Control: ClusterRoles permissions to escalate Roles or ClusterRoles should be minimized

Description

Minimize the permissions granted to ClusterRoles to escalate Roles or ClusterRoles. It is recommended to follow the principle of least privilege to enhance security.

Usage

Run the control in your terminal:

powerpipe control run kubernetes_compliance.control.role_with_rbac_escalate_permissions

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run kubernetes_compliance.control.role_with_rbac_escalate_permissions --share

SQL

This control uses a named query:

role_with_rbac_escalate_permissions

Tags