turbot/kubernetes_insights

Query: container_immutable_root_filesystem_count

Usage

powerpipe query kubernetes_insights.query.container_immutable_root_filesystem_count

Steampipe Tables

SQL

select
count(c ->> 'name') as value,
'Immutable Root Filesystem Unused' as label,
case
count(c ->> 'name')
when 0 then 'ok'
else 'alert'
end as type
from
kubernetes_pod,
jsonb_array_elements(containers) as c
where
c -> 'securityContext' ->> 'readOnlyRootFilesystem' = 'false'
or c -> 'securityContext' ->> 'readOnlyRootFilesystem' is null;

Dashboards

The query is used in the dashboards: