Skip to main content

More Info:

The kubelet read-only port serves cluster information without authentication or authorization. Setting —read-only-port to 0 disables this unauthenticated endpoint.

Risk Level

High

Address

Security

Compliance Standards

  • CIS Kubernetes

Triage and Remediation

Remediation

Using Console

Refer to the remediation guidance for this control. Detailed console, CLI and Python steps are being generated.