Enable audit logs in the cluster, To Do so, enable the log backend, and ensure that
1. logs are stored at /var/log/kubernetes-logs.txt.
2. Log files are retained for 12 days.
3. at maximum, a number of 8 old audit logs files are retained.
4. set the maximum size before getting rotated to 200MB
Edit and extend the basic policy to log:
1. namespaces changes at RequestResponse
2. Log the request body of secrets changes in the namespace kube-system.
3. Log all other resources in core and extensions at the Request level.
4. Log "pods/portforward", "services/proxy" at Metadata level.
5. Omit the Stage RequestReceived
All other requests at the Metadata level
Lura
4 months agoKip
5 months agoVan
5 months agoSkye
5 months agoWilda
5 months agoWillow
5 months agoNaomi
5 months agoBettina
5 months agoSherrell
5 months agoAlline
6 months agoLuis
6 months agoElenor
6 months agoMerlyn
6 months agoRebecka
11 months agoSabine
9 months agoFrancine
10 months agoHelga
10 months agoIlene
11 months agoDelsie
9 months agoAlba
9 months agoArlen
9 months agoHyman
9 months agoJacqueline
9 months agoPhung
10 months agoMalinda
10 months agoNikita
11 months agoLaticia
11 months agoArlene
10 months agoMica
11 months agoMauricio
11 months agoSteffanie
11 months agoTalia
11 months agoJesus
11 months agoBrett
10 months agoTegan
10 months agoPhillip
11 months agoCandra
11 months agoWillodean
12 months ago