kube-bench

by aquasecurity · Infrastructure

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

New0 ratings8,176 starsActive
InfrastructureDeveloper ToolGoMakefile
↓ Download v0.16.0GitHub⚑ Report
kube-bench — image 1
kube-bench — image 2
1 / 2

About this project

kube-bench is a tool that checks whether Kubernetes is deployed securely by running the checks documented in the CIS Kubernetes Benchmark. Tests are configured with YAML files, making this tool easy to update as test specifications evolve. CIS Scanning as part of Trivy and the Trivy Operator Trivy, the all in one cloud native security scanner, can be deployed as a Kubernetes Operator inside a cluster. Both, the Trivy CLI, and the Trivy Operator support CIS Kubernetes Benchmark scanning among several other features. Quick start There are multiple ways to run kube-bench. You can run kube-bench inside a pod, but it will need access to the host's PID namespace in order to check the…

Technologies

ShellDockerfileMakefileGocis-benchmarkcis-kubernetes-benchmarkcis-security

Project health

Actively maintained
Last updateyesterday
Contributors165
Latest releasev0.16.0
Open issues & PRs102
LicenseApache-2.0
On GitHubsince 2017

GitHub

8,176
stars
1,338
forks
165
contributors
102
open issues & PRs
Go
language
yesterday
last commit
View on GitHub ↗All releases ↗

Reviews

out of 5 · 0 ratings
★★★★★
0%
★★★★
0%
★★★
0%
★★
0%
0%
Sign in to write a review
No reviews yet
Be the first to review kube-bench.

Built by

aquasecurity
Imported from GitHub · not yet claimed on GitPalace
View developer pageSign in with GitHub to claim

Maintain aquasecurity/kube-bench? Claiming verifies admin access through your GitHub account and gives you control of this listing.

You might also like