Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

A few things we can clean up on prod / dev cluster #32

Open
t83714 opened this issue Feb 11, 2021 · 0 comments
Open

A few things we can clean up on prod / dev cluster #32

t83714 opened this issue Feb 11, 2021 · 0 comments

Comments

@t83714
Copy link
Contributor

t83714 commented Feb 11, 2021

Some comments from @peterhassall below:

  • All node pools have legacy oauth scopes enabled, meaning all pods have full read/write access to the GCE API - need to create new node pools to change
  • Both clusters have legacy and basic auth enabled - should be disabled
  • Both clusters have the Kubernetes Dashboard enabled - no longer supported and is considered a security risk
  • dev-new has SD monitoring disabled - it's handy to track resource utilisation

We probably should have a look to see if we fix those when deploying to production next time.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant