How to download the list of CIS benchmark inspection solutions conducted by Tanzu Mission Control
search cancel

How to download the list of CIS benchmark inspection solutions conducted by Tanzu Mission Control

book

Article ID: 327452

calendar_today

Updated On:

Products

Tanzu Mission Control

Issue/Introduction

This article will help you to download the list of CIS benchmarks inspection tests solutions.


Resolution

There are two options to download the CIS inspection tests :

1) Using TMC Console as TMC uses Sonobouy to run CIS Benchmark scans. It allows to download the pass, fail and warning tests including their reasons and resolutions to remediate the specific failed tests.

Screenshot 2021-09-07 at 3.55.58 PM.png

You will notice TMC downloads the report in .tar format.  You can see all the results under "plugins" directory pointing to "sonobuoy_results.yaml". 

Screenshot 2021-09-08 at 1.56.01 PM.png


2) Using CIS official website, to download the latest CIS benchmarks with their solution,  you need to sign up official CIS website and then download CIS  benchmarks for kubernetes. Make sure you download it for correct kubernetes version.  

https://www.cisecurity.org/cis-benchmarks/#kubernetes