High EKS Regional

EKS cluster endpoints should not be publicly accessible

NISTISO 27001

Description

Checks whether an Amazon EKS cluster endpoint is not publicly accessible. The control fails if an EKS cluster has an endpoint that is publicly accessible.


Remediation

To modify endpoint access for an existing EKS cluster, see Modifying cluster endpoint access in the Amazon EKS User Guide.

Steps

  1. Go to the Amazon EKS console.
  2. Select the EKS cluster.
  3. Modify the cluster configuration to disable public access to the endpoint.

Compliance

NISTISO 27001