Enable audit logs in the cluster, To Do so, enable the log backend, and ensure that
1. logs are stored at /var/log/kubernetes/kubernetes-logs.txt.
2. Log files are retained for 5 days.
3. at maximum, a number of 10 old audit logs files are retained.
Edit and extend the basic policy to log:
1. Cronjobs changes at RequestResponse
2. Log the request body of deployments changes in the namespace kube-system.
3. Log all other resources in core and extensions at the Request level.
4. Don't log watch requests by the "system:kube-proxy" on endpoints or
Sheldon
10 months agoTammy
10 months agoMarylyn
10 months agoSheldon
10 months agoTammy
10 months agoMarylyn
10 months agoMartha
11 months agoVicki
11 months agoKarl
11 months agoMartha
11 months agoVicki
12 months agoKarl
12 months ago