Use the NSA CISA Kubernetes Hardening Guide v1.2 policy bundle with Policy Controller to evaluate the compliance of your cluster resources against some aspects of the NSA CISA Kubernetes Hardening Guide v1.2.
The NSA CISA Kubernetes Hardening Guide v1.2 publication provide more details about the controls targeted by this policy bundle.
This bundle requires Policy Controller version 1.15.2 or higher.
kubectl kustomize https://github.com/GoogleCloudPlatform/gke-policy-library.git/anthos-bundles/nsa-cisa-k8s-v1.2
kubectl apply -k https://github.com/GoogleCloudPlatform/gke-policy-library.git/anthos-bundles/nsa-cisa-k8s-v1.2
https://cloud.google.com/anthos-config-management/docs/how-to/using-nsa-cisa-k8s