Workload misconfigurations

Kubernetes node’s kubelet –tls-cert-file and –tls-private-key-file are not set

Risk Level

Informational (4)

  • N/A


Kubelet communication contains sensitive parameters that should remain encrypted in transit. Orca has detected that the --tls-cert-file or --tls-private-key-file arguments are not set to an appropriate files.
  • Recommended Mitigation

    Consider setting {K8sNode}'s Kubelet's --tls-cert-file and --tls-private-key-file to a valid certificate file path.