
Recommendation description: A description of the recommendation issued by the CIS benchmark.CIS ID: The associated rule ID with each of the baseline rules.

#Azure cis benchmark 1.3 drivers#
Unnecessary kernel module drivers have been disabled in the OS to reduce the attack surface.The security-optimized host OS is built and maintained specifically for AKS and is not supported outside of the AKS platform.AKS and Azure Linux provide a security-optimized host OS by default with no option to select an alternate operating system.This Azure Linux Container Host operating system is based on the Azure Linux 2.0 image with built-in security configurations applied.Īs part of the security-optimized operating system: For more information on the Azure security baselines for Linux, see Linux security baseline. To learn more about the CIS benchmark, see Center for Internet Security (CIS) Benchmarks. For more information about the Azure Linux Container Host security, see Security concepts for clusters in AKS.

As a secure service, AKS complies with SOC, ISO, PCI DSS, and HIPAA standards. The security OS configuration applied to the Azure Linux Container Host for AKS image is based on the Azure Linux security baseline, which aligns with the CIS benchmark. Azure Kubernetes Service (AKS) and the Microsoft Azure Linux image alignment with Center for Internet Security (CIS) benchmark
