Enable audit logs in the cluster, To Do so, enable the log backend, and ensure that
1. logs are stored at /var/log/kubernetes/kubernetes-logs.txt.
2. Log files are retained for 5 days.
3. at maximum, a number of 10 old audit logs files are retained.
Edit and extend the basic policy to log:
1. Cronjobs changes at RequestResponse
2. Log the request body of deployments changes in the namespace kube-system.
3. Log all other resources in core and extensions at the Request level.
4. Don't log watch requests by the "system:kube-proxy" on endpoints or
Sheldon
4 months agoTammy
4 months agoMarylyn
4 months agoSheldon
4 months agoTammy
5 months agoMarylyn
5 months agoMartha
5 months agoVicki
5 months agoKarl
6 months agoMartha
6 months agoVicki
6 months agoKarl
6 months ago