Network misconfigurations

GKE has Master Authorized Networks disabled

Risk Level

Informational (4)

Platform(s)
Compliance Frameworks

Description

Authorized networks are a way of specifying a restricted range of IP addresses that are permitted to access your cluster's control plane. It was detected that {GcpGkeCluster} does not utilize Master Authorized Networks.
  • Recommended Mitigation

    Enable Master Authorized Networks to restrict access to the cluster's control plane (master endpoint) to only an allowlist (whitelist) of authorized IPs. For more info: <a href="https://cloud.google.com/kubernetes-engine/docs/how-to/authorized-networks" target="_blank" rel="noopener noreferrer">https://cloud.google.com/kubernetes-engine/docs/how-to/authorized-networks</a>