3.1.10 Ensure that the --audit-log-path argument is set as appropriate

Information

Enable auditing on kubernetes federation apiserver and set the desired audit log path as appropriate.

Rationale:

Auditing Kubernetes federation apiserver provides a security-relevant chronological set of records documenting the sequence of activities that have affected system by individual users, administrators or other components of the system. Even though currently, Kubernetes provides only basic audit capabilities, it should be enabled. You can enable it by setting an appropriate audit log path.

Solution

Edit the deployment specs and set '--audit-log-path' argument as appropriate.

kubectl edit deployments federation-apiserver-deployment --namespace=federation-system

Impact:

None

See Also

https://workbench.cisecurity.org/files/1788

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-12c., CSCv6|6.2

Plugin: Unix

Control ID: 7b839ebce966934c2b2397a822bc65a2876cb184466bb02d3900d5454b122fb4