-
Notifications
You must be signed in to change notification settings - Fork 5
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
ADR: Hardened EKS AMI #56
Comments
Is this meant to be a research spike/ADR? Or to actually change which AMI is used by the examples? Currently:
Notes:
|
Yes, was intended to be a research spike. Also, agree @RothAndrew I think there would be a lot of benefit to standardizing on an aws-supported distroless AMI for EKS (bottlerocket) and allowing users to set the flag mentioned if they prefer a different option. |
This PR added bottlerocket node group example |
Building STIG-compliant amis for EKS
Related Issues:
FIPS EKS AMI issue
FIPS Bottlerocket issue
Edit: EC2 image builder is inconsistent for things in the user_data and if we're going to do something custom, we may want to consider packer.
Definition of Done:
The text was updated successfully, but these errors were encountered: