A GKE Cluster's kubelet configuration file should have permissions set to 644 or more restrictive

Description

If the kubelet refers to a configuration file with the --config argument, ensure that the file has permissions set to 644 or to a more restrictive setting. The file should be writable only by the administrators on the system.

Remediation

Run the following command to fix the kubelet configuration file’s permissions:

chmod 644 /etc/kubernetes/kubelet/kubelet-config.json

Note: The path above is the default location.