Preparing for falco

This commit is contained in:
Adrien Reslinger 2021-05-07 23:55:15 +02:00
parent b5eb997165
commit 361895d43d
Signed by: adrien
GPG key ID: DA7B27055C66D6DE
3 changed files with 74 additions and 37 deletions

View file

@ -168,6 +168,10 @@
when:
- kubernetes_master|bool
# https://v1-17.docs.kubernetes.io/docs/tasks/debug-application-cluster/falco/
# https://github.com/falcosecurity/falco/blob/master/rules/k8s_audit_rules.yaml
# Ou récupération de ces règles pour une utilisation avec falco
- name: Configure audit policy
copy:
src: "etc/kubernetes/policies/audit-policy.yaml"