More Info:

Enable VPC Flow Logs and Intranode Visibility to see pod-level traffic, even for traffic within a worker node.

Risk Level

Low

Address

Security, Reliability, Operational Excellence, Performance Efficiency

Compliance Standards

CISGKE

Triage and Remediation

Remediation

To remediate the misconfiguration of enabling VPC Flow Logs and Intranode Visibility for GCP using GCP console, please follow the below steps:

  1. Login to the Google Cloud Console with your credentials.
  2. Navigate to the VPC network section from the left-hand navigation menu.
  3. Select the VPC network for which you want to enable flow logs and intranode visibility.
  4. Click on the Edit button at the top of the page.
  5. Scroll down to the Flow Logs section and enable it.
  6. Select the destination where you want to store the logs. You can choose either Stackdriver Logging or a Cloud Storage bucket.
  7. Choose the filter for the logs. You can choose to log all traffic or only specific traffic.
  8. Scroll down to the Intranode Visibility section and enable it.
  9. Click on the Save button at the bottom of the page to apply the changes.

After following these steps, VPC Flow Logs and Intranode Visibility will be enabled for the selected VPC network in GCP.

Additional Reading: