1.1.14 Ensure that the admin.conf file ownership is set to root:root

Information

Ensure that the admin.conf file ownership is set to root:root.

Rationale:

The admin.conf file contains the admin credentials for the cluster. You should set its file ownership to maintain the integrity and confidentiality of the file. The file should be owned by root:root.

Impact:

None.

Solution

Run the below command (based on the file location on your system) on the Control Plane node. For example,

chown root:root /etc/kubernetes/admin.conf

Default Value:

By default, admin.conf file ownership is set to root:root.

See Also

https://workbench.cisecurity.org/files/3892