From e8f0fb82fec3c48db0940174c2b9e6a0043ab750 Mon Sep 17 00:00:00 2001 From: Kay Yan <yankay@users.noreply.github.com> Date: Thu, 30 Mar 2023 00:35:49 +0800 Subject: [PATCH] fix-kube-bench-1.2.20 (#9939) --- docs/vars.md | 2 +- roles/kubernetes/control-plane/defaults/main/main.yml | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/docs/vars.md b/docs/vars.md index 6e127cbbd..06f1e6f6f 100644 --- a/docs/vars.md +++ b/docs/vars.md @@ -252,7 +252,7 @@ node_taints: The auditing parameters can be tuned via the following variables (which default values are shown below): * `audit_log_path`: /var/log/audit/kube-apiserver-audit.log * `audit_log_maxage`: 30 - * `audit_log_maxbackups`: 1 + * `audit_log_maxbackups`: 10 * `audit_log_maxsize`: 100 * `audit_policy_file`: "{{ kube_config_dir }}/audit-policy/apiserver-audit-policy.yaml" diff --git a/roles/kubernetes/control-plane/defaults/main/main.yml b/roles/kubernetes/control-plane/defaults/main/main.yml index 32cabb91e..a97f2f965 100644 --- a/roles/kubernetes/control-plane/defaults/main/main.yml +++ b/roles/kubernetes/control-plane/defaults/main/main.yml @@ -48,7 +48,7 @@ audit_log_path: /var/log/audit/kube-apiserver-audit.log # num days audit_log_maxage: 30 # the num of audit logs to retain -audit_log_maxbackups: 1 +audit_log_maxbackups: 10 # the max size in MB to retain audit_log_maxsize: 100 # policy file -- GitLab