Trivy
The all-in-one open source security scanner https://aquasecurity.github.io/trivy/v0.38/getting-started/installation/ trivy k8s –report summary cluster trivy –report summary –timeout 900s cluster
The all-in-one open source security scanner https://aquasecurity.github.io/trivy/v0.38/getting-started/installation/ trivy k8s –report summary cluster trivy –report summary –timeout 900s cluster
sudo kubeadm certs check-expiration Reading configuration from the cluster... FYI: You can look at this config file with 'kubectl -n kube-system get cm kubeadm-config -o yaml' CERTIFICATE EXPIRES RESIDUAL TIME…
frank@kubemaster:~$ mkdir kubectl-convertfrank@kubemaster:~$ cd kubectl-convert/ curl -LO “https://dl.k8s.io/release/$(curl -L -s https://dl.k8s.io/release/stable.txt)/bin/linux/amd64/kubectl-convert” curl -LO “https://dl.k8s.io/$(curl -L -s https://dl.k8s.io/release/stable.txt)/bin/linux/amd64/kubectl-convert.sha256” echo “$(cat kubectl-convert.sha256) kubectl-convert” | sha256sum –check sudo install -o root -g root…
C:\Users\win10\Downloads\tower>ssh root@192.168.50.239 root@192.168.50.239's password: Activate the web console with: systemctl enable --now cockpit.socket Last login: Mon Mar 6 23:52:14 2023 from ::ffff:192.168.50.200 # pwd /root # mkdir ansible # cd…
frank@kubemaster:~/.kube$ sudo kubeadm config print join-defaultsapiVersion: kubeadm.k8s.io/v1beta2caCertPath: /etc/kubernetes/pki/ca.crtdiscovery:bootstrapToken:apiServerEndpoint: kube-apiserver:6443token: abcdef.0123456789abcdefunsafeSkipCAVerification: truetimeout: 5m0stlsBootstrapToken: abcdef.0123456789abcdefkind: JoinConfigurationnodeRegistration:criSocket: /var/run/dockershim.sockname: kubemastertaints: null
frank@kubemaster:~/.kube$ sudo kubeadm config print init-defaultsapiVersion: kubeadm.k8s.io/v1beta2bootstrapTokens: taints: null apiServer:timeoutForControlPlane: 4m0sapiVersion: kubeadm.k8s.io/v1beta2certificatesDir: /etc/kubernetes/pkiclusterName: kubernetescontrollerManager: {}dns:type: CoreDNSetcd:local:dataDir: /var/lib/etcdimageRepository: k8s.gcr.iokind: ClusterConfigurationkubernetesVersion: 1.21.0networking:dnsDomain: cluster.localserviceSubnet: 10.96.0.0/12scheduler: {}
*** THIS WAS WORKING ** The connection to the server localhost:8080 was refused – did you specify the right host or port?