<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Kubernetes CIS Scans for EKS and OKE in Prisma Cloud Discussions</title>
    <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/kubernetes-cis-scans-for-eks-and-oke/m-p/1217788#M1415</link>
    <description>&lt;P&gt;Was this feature ever added to Palo Alto Prisma Cloud?&amp;nbsp; Does Prisma Cloud support scanning of EKS, AKS, GKE using vendor specific CIS Benchmarks?&lt;/P&gt;</description>
    <pubDate>Thu, 30 Jan 2025 12:19:01 GMT</pubDate>
    <dc:creator>jdmacallister</dc:creator>
    <dc:date>2025-01-30T12:19:01Z</dc:date>
    <item>
      <title>Kubernetes CIS Scans for EKS and OKE</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/kubernetes-cis-scans-for-eks-and-oke/m-p/538493#M921</link>
      <description>&lt;P&gt;We have Kubernetes deployments in AWS (EKS) and OCI (OKE). The Prisma Cloud compliance scans being run against these clusters are using the generic CIS Kubernetes 1.2 benchmark rather than using the CIS benchmarks that have been customized for EKS and OKE.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The use of the generic benchmark scan results in a number of findings that our DevOPS team have determined to be false positives, and other anomalies such as wrong file path because of differences in how these cloud providers implement Kubernetes.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am looking for a way to force Prisma Cloud to scan OKE clusters against the OKE benchmark, and EKS clusters against the EKS benchmark to get more accurate scan results.&lt;/P&gt;</description>
      <pubDate>Wed, 12 Apr 2023 17:16:31 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/kubernetes-cis-scans-for-eks-and-oke/m-p/538493#M921</guid>
      <dc:creator>jmadigan1</dc:creator>
      <dc:date>2023-04-12T17:16:31Z</dc:date>
    </item>
    <item>
      <title>Re: Kubernetes CIS Scans for EKS and OKE</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/kubernetes-cis-scans-for-eks-and-oke/m-p/538526#M922</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thank you for reaching to Palo Alto Networks Support. My name is Umer, and I am part of Prisma Cloud Compute Support team.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We currently has a feature request to add kubernetes specific CIS benchmark, and the request is under future consideration:&lt;/P&gt;
&lt;P&gt;&lt;A href="https://prismacloud.ideas.aha.io/ideas/TP-I-965" target="_blank"&gt;https://prismacloud.ideas.aha.io/ideas/TP-I-965&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Future consideration flag suggest that product team has reviewed the request, and it will be implemented it in one of our future releases.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please feel free to upvote on that request.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 12 Apr 2023 21:06:04 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/kubernetes-cis-scans-for-eks-and-oke/m-p/538526#M922</guid>
      <dc:creator>USheikh</dc:creator>
      <dc:date>2023-04-12T21:06:04Z</dc:date>
    </item>
    <item>
      <title>Re: Kubernetes CIS Scans for EKS and OKE</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/kubernetes-cis-scans-for-eks-and-oke/m-p/1217788#M1415</link>
      <description>&lt;P&gt;Was this feature ever added to Palo Alto Prisma Cloud?&amp;nbsp; Does Prisma Cloud support scanning of EKS, AKS, GKE using vendor specific CIS Benchmarks?&lt;/P&gt;</description>
      <pubDate>Thu, 30 Jan 2025 12:19:01 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/kubernetes-cis-scans-for-eks-and-oke/m-p/1217788#M1415</guid>
      <dc:creator>jdmacallister</dc:creator>
      <dc:date>2025-01-30T12:19:01Z</dc:date>
    </item>
    <item>
      <title>Re: Kubernetes CIS Scans for EKS and OKE</title>
      <link>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/kubernetes-cis-scans-for-eks-and-oke/m-p/1224788#M1451</link>
      <description>&lt;P&gt;Based on the link provided to the original enhancement request, this was released in last year in July. This includes the benchmarks below:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;UL&gt;
&lt;LI data-slate-object="block" data-key="16"&gt;&lt;SPAN data-slate-object="text" data-key="17"&gt;CIS Kubernetes 1.6.0 CIS &lt;/SPAN&gt;&lt;SPAN data-slate-object="text" data-key="18"&gt;Oracle Cloud Infrastructure &lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI data-slate-object="block" data-key="16"&gt;&lt;SPAN data-slate-object="text" data-key="18"&gt;Container Engine for Kubernetes(OKE) 1.0 &lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI data-slate-object="block" data-key="16"&gt;&lt;SPAN data-slate-object="text" data-key="18"&gt;CIS Google Kubernetes Engine (GKE) 1.0 &lt;/SPAN&gt;&lt;/LI&gt;
&lt;LI data-slate-object="block" data-key="16"&gt;&lt;SPAN data-slate-object="text" data-key="18"&gt;CIS Amazon Elastic Kubernetes Service (EKS) 1.0 CIS Docker 1.2.0&lt;/SPAN&gt;&lt;/LI&gt;
&lt;/UL&gt;
&lt;P class="" data-slate-object="block" data-key="19"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="" data-slate-object="block" data-key="19"&gt;This excludes OpenShift, and cloud-specific flavors like ROSA (&lt;STRONG&gt;R&lt;/STRONG&gt;edHat &lt;STRONG&gt;O&lt;/STRONG&gt;pen&lt;STRONG&gt;S&lt;/STRONG&gt;hift in &lt;STRONG&gt;A&lt;/STRONG&gt;WS)&lt;/P&gt;
&lt;P class="" data-slate-object="block" data-key="19"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="" data-slate-object="block" data-key="19"&gt;We have increased the coverage for OpenShift compliance checks since 3.x. Check with your assigned Customer Success Engineer with the latest details on that&lt;/P&gt;
&lt;P class="" data-slate-object="block" data-key="19"&gt;&amp;nbsp;&lt;/P&gt;
&lt;P class="" data-slate-object="block" data-key="19"&gt;Thank you&lt;/P&gt;</description>
      <pubDate>Wed, 26 Mar 2025 12:52:12 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/prisma-cloud-discussions/kubernetes-cis-scans-for-eks-and-oke/m-p/1224788#M1451</guid>
      <dc:creator>JJean-Claude</dc:creator>
      <dc:date>2025-03-26T12:52:12Z</dc:date>
    </item>
  </channel>
</rss>

