Network misconfigurations

GKE intra-node visibility is disabled

Platform(s)
Compliance Frameworks
  • CCPA
  • ,
  • CPRA
  • ,
  • GKE CIS
  • ,
  • iso_27001_2022
  • ,
  • iso_27002_2022
  • ,
  • K8s OWASP Top 10
  • ,
  • NIST 800-171
  • ,
  • NIST 800-53
  • ,
  • PDPA
  • ,
  • UK Cyber Essentials

Description

Intranode visibility configures networking on each node in the cluster so that traffic sent from one Pod to another Pod is processed by the cluster's Virtual Private Cloud (VPC) network, even if the Pods are on the same node. Orca has detected that {GcpGkeCluster} does not have the ""intra-node visibility"" option selected.