turbot/kubernetes_compliance

Control: Pod containers admission control plugin should not be set to 'always admit'

Description

This check ensures that the container in the Pod has an admission control plugin not set to 'always admit'.

Usage

Run the control in your terminal:

powerpipe control run kubernetes_compliance.control.pod_container_admission_control_plugin_no_always_admit

Snapshot and share results via Turbot Pipes:

powerpipe login
powerpipe control run kubernetes_compliance.control.pod_container_admission_control_plugin_no_always_admit --share

SQL

This control uses a named query:

pod_container_admission_control_plugin_no_always_admit

Tags