An AKS Cluster's Kubelet should not allow hostname overrides

Description

Hostnames in the cluster should not be overriden. This could potentially break the TLS setup between Kubelet and the API server. You should set up your kubelet nodes with resolvable FQDNs and avoid overriding the hostnames with IPs.

Remediation

  1. Edit the kubelet service file on each worker node and remove the following parameters are part of the KUBELET_ARGS variable string.
--hostname-override=<any-string>