turbot/kubernetes_compliance
GitHub
Loading controls...

Control: ServiceAccount definition should not use default namespace

Description

Default namespace should not be used by ServiceAccount definition. Placing objects in this namespace makes application of RBAC and other controls more difficult.

Usage

Run the control in your terminal:

steampipe check kubernetes_compliance.control.service_account_default_namespace_used

Snapshot and share results via Steampipe Cloud:

steampipe login
steampipe check --share kubernetes_compliance.control.service_account_default_namespace_used

SQL

This control uses a named query:

service_account_default_namespace_used

Tags