Network misconfigurations

GKE cluster is not VPC-native

Risk Level

Informational (4)

Platform(s)
Compliance Frameworks

Description

A cluster that uses Alias IPs is called a 'VPC-native' cluster. Using Alias IPs has several benefits: - The networking layer can perform anti-spoofing checks to ensure that egress traffic is not sent with arbitrary source IPs. -Firewall controls for Pods can be applied separately from their nodes. -Alias IPs allow Pods to directly access hosted services without using a NAT gateway. it was detected that