RBAC should be enabled for the Kubernetes API server

Set up the kubernetes integration.

Description

Role Based Access Control (RBAC) should be enabled. RBAC allows fine-grained control over the operations that different entities can perform on different objects in the cluster.

Remediation

Edit the API server pod specification file /etc/kubernetes/manifests/kube-apiserver.yaml on the master node, and set the --authorization-mode parameter to a value that includes RBAC. For example, --authorization-mode=Node,RBAC.