lacework-global-727
Create a minimal audit policy (Manual)
Description
Kubernetes can audit the details of requests made to the API server.
To enable this logging, you must set the --audit-policy-file
flag.
Remediation
It is not possible to modify this control in Google Kubernetes Engine (GKE).
References
https://kubernetes.io/docs/tasks/debug/debug-cluster/audit/
https://cloud.google.com/kubernetes-engine/docs/concepts/cis-benchmarks
https://cloud.google.com/kubernetes-engine/docs/concepts/audit-policy