Compliance Run (12-15-2025)

Diki Version: v0.21.1
Glossary
  • 🟢 Passed: Rule check has been fulfilled.
  • 🔵 Skipped: Rule check has been considered irrelevant for the specific scenario and will not be run.
  • 🔵 Accepted: Rule check may or may not have been run, but it was decided by the user that the check is not a finding.
  • 🟠 Warning: Rule check has encountered an ambiguous condition or configuration preventing the ability to determine if the check is fulfilled or not.
  • 🔴 Failed: Rule check has been unfulfilled, can be considered a finding.
  • 🔴 Errored: Rule check has errored during runtime. It cannot be determined whether the check is fulfilled or not.
  • 🟠 Not Implemented: Rule check has not been implemented yet.

Evaluated targets
  • aws (gardenerVersion: v1.133.0, projectName: diki-comp, time: 12-15-2025 01:19:41)
  • azure (gardenerVersion: v1.133.0, projectName: diki-comp, time: 12-15-2025 01:21:10)
  • gcp (gardenerVersion: v1.133.0, projectName: diki-comp, time: 12-15-2025 01:22:30)
  • openstack (gardenerVersion: v1.133.0, projectName: diki-comp, time: 12-15-2025 01:24:46)
  • v0.2.1 Security Hardened Shoot Cluster (11x Passed 🟢)
    • 🟢 Passed
      • 1000 (Medium) - Shoot clusters should enable required extensions.
        • Extension shoot-lakom-service is enabled for the shoot cluster.
          • aws
          • azure
          • gcp
          • openstack
      • 1001 (Medium) - Shoot clusters should use a supported version of Kubernetes.
        • Shoot uses a Kubernetes version with an allowed classification.
          • aws
            • classification: supported version: 1.33.5
          • azure
            • classification: supported version: 1.33.5
          • gcp
            • classification: supported version: 1.33.5
          • openstack
            • classification: supported version: 1.33.5
      • 1002 (Medium) - Shoot clusters should use supported versions for their Workers' images.
        • Worker group uses allowed classification of machine image.
          • aws
            • classification: supported image: gardenlinux version: 1877.8.0 worker: worker-kkfk1
          • azure
            • classification: supported image: gardenlinux version: 1877.8.0 worker: worker-g7p4p
          • gcp
            • classification: supported image: gardenlinux version: 1877.8.0 worker: worker-bex82
          • openstack
            • classification: supported image: gardenlinux version: 1877.8.0 worker: worker-dqty2
      • 1003 (High) - Shoot clusters must have the Lakom extension configured.
        • Extension shoot-lakom-service configured correctly for the shoot cluster.
          • aws
          • azure
          • gcp
          • openstack
      • 2000 (High) - Shoot clusters must have anonymous authentication disabled for the Kubernetes API server.
        • Anonymous authentication is not enabled for the kube-apiserver.
          • aws
          • azure
          • gcp
          • openstack
      • 2001 (Medium) - Shoot clusters must disable ssh access to worker nodes.
        • SSH access is disabled for worker nodes.
          • aws
          • azure
          • gcp
          • openstack
      • 2002 (Medium) - Shoot clusters must not have Alpha APIs enabled for any Kubernetes component.
        • AllAlpha featureGate is not enabled for the kubelet.
          • aws
            • worker: worker-kkfk1
          • azure
            • worker: worker-g7p4p
          • gcp
            • worker: worker-bex82
          • openstack
            • worker: worker-dqty2
        • AllAlpha featureGate is not enabled for the kube-apiserver.
          • aws
          • azure
          • gcp
          • openstack
        • AllAlpha featureGate is not enabled for the kube-controller-manager.
          • aws
          • azure
          • gcp
          • openstack
        • AllAlpha featureGate is not enabled for the kube-scheduler.
          • aws
          • azure
          • gcp
          • openstack
        • AllAlpha featureGate is not enabled for the kube-proxy.
          • aws
          • azure
          • gcp
          • openstack
      • 2003 (High) - Shoot clusters must enable kernel protection for Kubelets.
        • Default kubelet config does not disable kernel protection.
          • aws
          • azure
          • gcp
          • openstack
        • Worker kubelet config does not disable kernel protection.
          • aws
            • worker: worker-kkfk1
          • azure
            • worker: worker-g7p4p
          • gcp
            • worker: worker-bex82
          • openstack
            • worker: worker-dqty2
      • 2004 (High) - Shoot clusters must have ValidatingAdmissionWebhook admission plugin enabled.
        • The ValidatingAdmissionWebhook admission plugin is not disabled.
          • aws
          • azure
          • gcp
          • openstack
      • 2005 (Medium) - Shoot clusters must not disable timeouts for Kubelet.
        • The connection timeout is not set and therefore will be defaulted to the recommended value (5m).
          • aws
            • worker: worker-kkfk1
          • azure
            • worker: worker-g7p4p
          • gcp
            • worker: worker-bex82
          • openstack
            • worker: worker-dqty2
      • 2007 (High) - Shoot clusters must have a PodSecurity admission plugin configured.
        • PodSecurity admission plugin is configured correctly.
          • aws
          • azure
          • gcp
          • openstack

Evaluated targets
  • aws (gardenVirtualCloudProvider: gcp, gardenerVersion: v1.133.0, projectName: diki-comp, seedCloudProvider: aws, seedKubernetesVersion: v1.33.6, shootCloudProvider: aws, shootKubernetesVersion: v1.33.5, time: 12-15-2025 01:19:41)
  • azure (gardenVirtualCloudProvider: gcp, gardenerVersion: v1.133.0, projectName: diki-comp, seedCloudProvider: azure, seedKubernetesVersion: v1.33.6, shootCloudProvider: azure, shootKubernetesVersion: v1.33.5, time: 12-15-2025 01:21:10)
  • gcp (gardenVirtualCloudProvider: gcp, gardenerVersion: v1.133.0, projectName: diki-comp, seedCloudProvider: gcp, seedKubernetesVersion: v1.33.6, shootCloudProvider: gcp, shootKubernetesVersion: v1.33.5, time: 12-15-2025 01:22:30)
  • openstack (gardenVirtualCloudProvider: gcp, gardenerVersion: v1.133.0, projectName: diki-comp, seedCloudProvider: openstack, seedKubernetesVersion: v1.33.6, shootCloudProvider: openstack, shootKubernetesVersion: v1.33.5, time: 12-15-2025 01:24:46)
  • v2r4 DISA Kubernetes Security Technical Implementation Guide (62x Passed 🟢, 26x Skipped 🔵, 8x Accepted 🔵)
    • 🟢 Passed
      • 242376 (Medium) - The Kubernetes Controller Manager must use TLS 1.2, at a minimum, to protect the confidentiality of sensitive data during electronic dissemination.
        • Option tls-min-version has not been set.
          • aws
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
      • 242377 (Medium) - Kubernetes Scheduler must use TLS 1.2, at a minimum, to protect the confidentiality of sensitive data during electronic dissemination.
        • Option tls-min-version has not been set.
          • aws
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
          • azure
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
          • gcp
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
          • openstack
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
      • 242378 (Medium) - The Kubernetes API Server must use TLS 1.2, at a minimum, to protect the confidentiality of sensitive data during electronic dissemination.
        • Option tls-min-version has not been set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242379 (Medium) - The Kubernetes etcd must use TLS to protect the confidentiality of sensitive data during electronic dissemination.
        • Option client-transport-security.auto-tls set to allowed value.
          • aws
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
          • azure
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
          • gcp
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
          • openstack
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
      • 242381 (High) - The Kubernetes Controller Manager must create unique service accounts for each work payload.
        • Option use-service-account-credentials set to allowed value.
          • aws
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
      • 242382 (Medium) - The Kubernetes API Server must enable Node,RBAC as the authorization mode.
        • AuthorizationConfiguration has expected start mode types set.
          • aws
            • kind: AuthorizationConfiguration
          • azure
            • kind: AuthorizationConfiguration
          • gcp
            • kind: AuthorizationConfiguration
          • openstack
            • kind: AuthorizationConfiguration
      • 242383 (Medium) - Kubernetes must separate user functionality.
        • System resource in system namespaces.
          • aws
            • kind: Service name: kubernetes namespace: default
          • azure
            • kind: Service name: kubernetes namespace: default
          • gcp
            • kind: Service name: kubernetes namespace: default
          • openstack
            • kind: Service name: kubernetes namespace: default
      • 242386 (High) - The Kubernetes API server must have the insecure port flag disabled.
        • Option insecure-port not set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242387 (High) - The Kubernetes Kubelet must have the "readOnlyPort" flag disabled.
        • Option readOnlyPort not set.
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-fxp69
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-qfsgx
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-rcmph
      • 242388 (High) - The Kubernetes API server must have the insecure bind address not set.
        • Option insecure-bind-address not set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242389 (Medium) - The Kubernetes API server must have the secure port set.
        • Option secure-port set to allowed value.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242390 (High) - The Kubernetes API server must have anonymous authentication disabled.
        • The authentication configuration has anonymous authentication disabled.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242391 (High) - The Kubernetes Kubelet must have anonymous authentication disabled.
        • Option authentication.anonymous.enabled set to allowed value.
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-fxp69
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-qfsgx
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-rcmph
      • 242392 (High) - The Kubernetes kubelet must enable explicit authorization.
        • Option authorization.mode set to allowed value.
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-fxp69
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-qfsgx
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-rcmph
      • 242393 (Medium) - Kubernetes Worker Nodes must not have sshd service running.
        • SSH daemon service not installed
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
      • 242394 (Medium) - Kubernetes Worker Nodes must not have the sshd service enabled.
        • SSH daemon disabled (or could not be probed)
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
      • 242395 (Medium) - Kubernetes dashboard must not be enabled.
        • Kubernetes dashboard not installed
          • aws
          • azure
          • gcp
          • openstack
      • 242397 (High) - The Kubernetes kubelet staticPodPath must not enable static pods.
        • Option staticPodPath not set.
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-fxp69
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-qfsgx
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-rcmph
      • 242400 (Medium) - The Kubernetes API server must have Alpha APIs disabled.
        • Option featureGates.AllAlpha not set.
          • aws
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • cluster: shoot kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • cluster: shoot kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
          • azure
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • cluster: shoot kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • cluster: shoot kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-fxp69
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
          • gcp
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • cluster: shoot kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • cluster: shoot kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-qfsgx
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
          • openstack
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • cluster: shoot kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • cluster: shoot kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-rcmph
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
      • 242404 (Medium) - Kubernetes Kubelet must deny hostname override.
        • Flag hostname-override not set.
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
      • 242406 (Medium) - The Kubernetes kubelet configuration file must be owned by root.
        • File has expected owners
          • aws
            • details: fileName: /etc/systemd/system/kubelet.service, ownerUser: 0, ownerGroup: 0 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • details: fileName: /etc/systemd/system/kubelet.service, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
          • gcp
            • details: fileName: /etc/systemd/system/kubelet.service, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
          • openstack
            • details: fileName: /etc/systemd/system/kubelet.service, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
      • 242407 (Medium) - The Kubernetes kubelet configuration files must have file permissions set to 644 or more restrictive.
        • File has expected permissions
          • aws
            • details: fileName: /etc/systemd/system/kubelet.service, permissions: 600 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • details: fileName: /etc/systemd/system/kubelet.service, permissions: 600 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
          • gcp
            • details: fileName: /etc/systemd/system/kubelet.service, permissions: 600 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
          • openstack
            • details: fileName: /etc/systemd/system/kubelet.service, permissions: 600 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
      • 242409 (Medium) - Kubernetes Controller Manager must disable profiling.
        • Option profiling set to allowed value.
          • aws
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
      • 242414 (Medium) - The Kubernetes cluster must use non-privileged host ports for user pods.
        • Pod does not have container using hostPort < 1024.
          • aws
            • cluster: seed kind: Deployment name: aws-custom-route-controller namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: blackbox-exporter namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: cert-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: cloud-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: csi-driver-controller namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: csi-snapshot-controller namespace: shoot--diki-comp--aws
            • cluster: seed kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: event-logger namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: extension-shoot-lakom-service namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: gardener-resource-manager namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: kube-state-metrics namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: machine-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: network-problem-detector-controller namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: plutono namespace: shoot--diki-comp--aws
            • cluster: seed kind: StatefulSet name: prometheus-shoot namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: shoot-dns-service namespace: shoot--diki-comp--aws
            • cluster: seed kind: StatefulSet name: vali namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: vpa-admission-controller namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: vpa-recommender namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: vpa-updater namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: vpn-seed-server namespace: shoot--diki-comp--aws
            • cluster: shoot kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • cluster: shoot kind: Deployment name: blackbox-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: calico-node namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-deploy namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: coredns namespace: kube-system
            • cluster: shoot kind: DaemonSet name: csi-driver-node namespace: kube-system
            • cluster: shoot kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot kind: Deployment name: metrics-server namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-problem-detector namespace: kube-system
            • cluster: shoot kind: Deployment name: vpn-shoot namespace: kube-system
          • azure
            • cluster: seed kind: Deployment name: blackbox-exporter namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: cert-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: cloud-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: csi-driver-controller-disk namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: csi-driver-controller-file namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: csi-snapshot-controller namespace: shoot--diki-comp--azure
            • cluster: seed kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: event-logger namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: extension-shoot-lakom-service namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: gardener-resource-manager namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: kube-state-metrics namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: machine-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: network-problem-detector-controller namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: plutono namespace: shoot--diki-comp--azure
            • cluster: seed kind: StatefulSet name: prometheus-shoot namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: remedy-controller-azure namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: shoot-dns-service namespace: shoot--diki-comp--azure
            • cluster: seed kind: StatefulSet name: vali namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: vpa-admission-controller namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: vpa-recommender namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: vpa-updater namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: vpn-seed-server namespace: shoot--diki-comp--azure
            • cluster: shoot kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • cluster: shoot kind: Deployment name: blackbox-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: calico-node namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-deploy namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: DaemonSet name: cloud-node-manager namespace: kube-system
            • cluster: shoot kind: Deployment name: coredns namespace: kube-system
            • cluster: shoot kind: DaemonSet name: csi-driver-node-disk namespace: kube-system
            • cluster: shoot kind: DaemonSet name: csi-driver-node-file namespace: kube-system
            • cluster: shoot kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot kind: Deployment name: metrics-server namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-problem-detector namespace: kube-system
            • cluster: shoot kind: Deployment name: vpn-shoot namespace: kube-system
          • gcp
            • cluster: seed kind: Deployment name: blackbox-exporter namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: cert-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: cloud-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: csi-driver-controller namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: csi-snapshot-controller namespace: shoot--diki-comp--gcp
            • cluster: seed kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: event-logger namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: extension-shoot-lakom-service namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: gardener-resource-manager namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: kube-state-metrics namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: machine-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: network-problem-detector-controller namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: plutono namespace: shoot--diki-comp--gcp
            • cluster: seed kind: StatefulSet name: prometheus-shoot namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: shoot-dns-service namespace: shoot--diki-comp--gcp
            • cluster: seed kind: StatefulSet name: vali namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: vpa-admission-controller namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: vpa-recommender namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: vpa-updater namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: vpn-seed-server namespace: shoot--diki-comp--gcp
            • cluster: shoot kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • cluster: shoot kind: Deployment name: blackbox-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: calico-node namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-deploy namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: coredns namespace: kube-system
            • cluster: shoot kind: DaemonSet name: csi-driver-node namespace: kube-system
            • cluster: shoot kind: Pod name: diki-242407-zvrvxdjf1s namespace: kube-system
            • cluster: shoot kind: Pod name: diki-242466-ctdvmb4tzf namespace: kube-system
            • cluster: shoot kind: Pod name: diki-242467-spi683nir6 namespace: kube-system
            • cluster: shoot kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot kind: Deployment name: metrics-server namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-problem-detector namespace: kube-system
            • cluster: shoot kind: Deployment name: vpn-shoot namespace: kube-system
          • openstack
            • cluster: seed kind: Deployment name: blackbox-exporter namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: cert-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: cloud-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: csi-driver-controller namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: csi-snapshot-controller namespace: shoot--diki-comp--openstack
            • cluster: seed kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: event-logger namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: extension-shoot-lakom-service namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: gardener-resource-manager namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: kube-state-metrics namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: machine-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: network-problem-detector-controller namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: plutono namespace: shoot--diki-comp--openstack
            • cluster: seed kind: StatefulSet name: prometheus-shoot namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: shoot-dns-service namespace: shoot--diki-comp--openstack
            • cluster: seed kind: StatefulSet name: vali namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: vpa-admission-controller namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: vpa-recommender namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: vpa-updater namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: vpn-seed-server namespace: shoot--diki-comp--openstack
            • cluster: shoot kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • cluster: shoot kind: Deployment name: blackbox-exporter namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-kube-controllers namespace: kube-system
            • cluster: shoot kind: DaemonSet name: calico-node namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-deploy namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: coredns namespace: kube-system
            • cluster: shoot kind: DaemonSet name: csi-driver-node namespace: kube-system
            • cluster: shoot kind: Pod name: diki-242466-u6799xris4 namespace: kube-system
            • cluster: shoot kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot kind: Deployment name: metrics-server namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-problem-detector namespace: kube-system
            • cluster: shoot kind: Deployment name: vpn-shoot namespace: kube-system
      • 242415 (High) - Secrets in Kubernetes must not be stored as environment variables.
        • Pod does not use environment to inject secret.
          • aws
            • cluster: seed kind: Deployment name: aws-custom-route-controller namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: blackbox-exporter namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: cert-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: csi-driver-controller namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: csi-snapshot-controller namespace: shoot--diki-comp--aws
            • cluster: seed kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: event-logger namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: extension-shoot-lakom-service namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: gardener-resource-manager namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: kube-state-metrics namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: machine-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: network-problem-detector-controller namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: plutono namespace: shoot--diki-comp--aws
            • cluster: seed kind: StatefulSet name: prometheus-shoot namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: shoot-dns-service namespace: shoot--diki-comp--aws
            • cluster: seed kind: StatefulSet name: vali namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: vpa-admission-controller namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: vpa-recommender namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: vpa-updater namespace: shoot--diki-comp--aws
            • cluster: seed kind: Deployment name: vpn-seed-server namespace: shoot--diki-comp--aws
            • cluster: shoot kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • cluster: shoot kind: Deployment name: blackbox-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: calico-node namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-deploy namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: coredns namespace: kube-system
            • cluster: shoot kind: DaemonSet name: csi-driver-node namespace: kube-system
            • cluster: shoot kind: Pod name: diki-242404-t8g9llec9r namespace: kube-system
            • cluster: shoot kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot kind: Deployment name: metrics-server namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-local-dns-worker-kkfk1 namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-problem-detector namespace: kube-system
            • cluster: shoot kind: Deployment name: vpn-shoot namespace: kube-system
          • azure
            • cluster: seed kind: Deployment name: blackbox-exporter namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: cert-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: cloud-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: csi-driver-controller-disk namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: csi-driver-controller-file namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: csi-snapshot-controller namespace: shoot--diki-comp--azure
            • cluster: seed kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: event-logger namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: extension-shoot-lakom-service namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: gardener-resource-manager namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: kube-state-metrics namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: machine-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: network-problem-detector-controller namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: plutono namespace: shoot--diki-comp--azure
            • cluster: seed kind: StatefulSet name: prometheus-shoot namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: remedy-controller-azure namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: shoot-dns-service namespace: shoot--diki-comp--azure
            • cluster: seed kind: StatefulSet name: vali namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: vpa-admission-controller namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: vpa-recommender namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: vpa-updater namespace: shoot--diki-comp--azure
            • cluster: seed kind: Deployment name: vpn-seed-server namespace: shoot--diki-comp--azure
            • cluster: shoot kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • cluster: shoot kind: Deployment name: blackbox-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: calico-node namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-deploy namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: DaemonSet name: cloud-node-manager namespace: kube-system
            • cluster: shoot kind: Deployment name: coredns namespace: kube-system
            • cluster: shoot kind: DaemonSet name: csi-driver-node-disk namespace: kube-system
            • cluster: shoot kind: DaemonSet name: csi-driver-node-file namespace: kube-system
            • cluster: shoot kind: Pod name: diki-242400-7o1jlr2mkb namespace: kube-system
            • cluster: shoot kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot kind: Deployment name: metrics-server namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-local-dns-worker-g7p4p namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-problem-detector namespace: kube-system
            • cluster: shoot kind: Deployment name: vpn-shoot namespace: kube-system
          • gcp
            • cluster: seed kind: Deployment name: blackbox-exporter namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: cert-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: cloud-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: csi-driver-controller namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: csi-snapshot-controller namespace: shoot--diki-comp--gcp
            • cluster: seed kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: event-logger namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: extension-shoot-lakom-service namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: gardener-resource-manager namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: kube-state-metrics namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: machine-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: network-problem-detector-controller namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: plutono namespace: shoot--diki-comp--gcp
            • cluster: seed kind: StatefulSet name: prometheus-shoot namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: shoot-dns-service namespace: shoot--diki-comp--gcp
            • cluster: seed kind: StatefulSet name: vali namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: vpa-admission-controller namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: vpa-recommender namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: vpa-updater namespace: shoot--diki-comp--gcp
            • cluster: seed kind: Deployment name: vpn-seed-server namespace: shoot--diki-comp--gcp
            • cluster: shoot kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • cluster: shoot kind: Deployment name: blackbox-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: calico-node namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-deploy namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: coredns namespace: kube-system
            • cluster: shoot kind: DaemonSet name: csi-driver-node namespace: kube-system
            • cluster: shoot kind: Pod name: diki-242449-cxgdp2z135 namespace: kube-system
            • cluster: shoot kind: Pod name: diki-242451-8lhmgsi0kz namespace: kube-system
            • cluster: shoot kind: Pod name: diki-242467-spi683nir6 namespace: kube-system
            • cluster: shoot kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot kind: Deployment name: metrics-server namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-local-dns-worker-bex82 namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-problem-detector namespace: kube-system
            • cluster: shoot kind: Deployment name: vpn-shoot namespace: kube-system
          • openstack
            • cluster: seed kind: Deployment name: blackbox-exporter namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: cert-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: cloud-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: csi-driver-controller namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: csi-snapshot-controller namespace: shoot--diki-comp--openstack
            • cluster: seed kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: event-logger namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: extension-shoot-lakom-service namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: gardener-resource-manager namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: kube-state-metrics namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: machine-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: network-problem-detector-controller namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: plutono namespace: shoot--diki-comp--openstack
            • cluster: seed kind: StatefulSet name: prometheus-shoot namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: shoot-dns-service namespace: shoot--diki-comp--openstack
            • cluster: seed kind: StatefulSet name: vali namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: vpa-admission-controller namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: vpa-recommender namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: vpa-updater namespace: shoot--diki-comp--openstack
            • cluster: seed kind: Deployment name: vpn-seed-server namespace: shoot--diki-comp--openstack
            • cluster: shoot kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • cluster: shoot kind: Deployment name: blackbox-exporter namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-kube-controllers namespace: kube-system
            • cluster: shoot kind: DaemonSet name: calico-node namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-deploy namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • cluster: shoot kind: Deployment name: coredns namespace: kube-system
            • cluster: shoot kind: DaemonSet name: csi-driver-node namespace: kube-system
            • cluster: shoot kind: Pod name: diki-242453-j9hnawhewb namespace: kube-system
            • cluster: shoot kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • cluster: shoot kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot kind: Deployment name: metrics-server namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • cluster: shoot kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-exporter namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-local-dns-worker-dqty2 namespace: kube-system
            • cluster: shoot kind: DaemonSet name: node-problem-detector namespace: kube-system
            • cluster: shoot kind: Deployment name: vpn-shoot namespace: kube-system
      • 242417 (Medium) - Kubernetes must separate user functionality.
        • Gardener managed pods are not user pods
          • aws
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: DaemonSet name: calico-node namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: DaemonSet name: csi-driver-node namespace: kube-system
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • kind: DaemonSet name: node-exporter namespace: kube-system
            • kind: DaemonSet name: node-local-dns-worker-kkfk1 namespace: kube-system
            • kind: DaemonSet name: node-problem-detector namespace: kube-system
            • kind: Deployment name: vpn-shoot namespace: kube-system
          • azure
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: DaemonSet name: calico-node namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: DaemonSet name: cloud-node-manager namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system
            • kind: DaemonSet name: csi-driver-node-file namespace: kube-system
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • kind: DaemonSet name: node-exporter namespace: kube-system
            • kind: DaemonSet name: node-local-dns-worker-g7p4p namespace: kube-system
            • kind: DaemonSet name: node-problem-detector namespace: kube-system
            • kind: Deployment name: vpn-shoot namespace: kube-system
          • gcp
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: DaemonSet name: calico-node namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: DaemonSet name: csi-driver-node namespace: kube-system
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • kind: DaemonSet name: node-exporter namespace: kube-system
            • kind: DaemonSet name: node-local-dns-worker-bex82 namespace: kube-system
            • kind: DaemonSet name: node-problem-detector namespace: kube-system
            • kind: Deployment name: vpn-shoot namespace: kube-system
          • openstack
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-kube-controllers namespace: kube-system
            • kind: DaemonSet name: calico-node namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: DaemonSet name: csi-driver-node namespace: kube-system
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • kind: DaemonSet name: node-exporter namespace: kube-system
            • kind: DaemonSet name: node-local-dns-worker-dqty2 namespace: kube-system
            • kind: DaemonSet name: node-problem-detector namespace: kube-system
            • kind: Deployment name: vpn-shoot namespace: kube-system
      • 242418 (Medium) - The Kubernetes API server must use approved cipher suites.
        • Option tls-cipher-suites set to allowed values.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242419 (Medium) - Kubernetes API Server must have the SSL Certificate Authority set.
        • Option client-ca-file set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242420 (Medium) - Kubernetes Kubelet must have the SSL Certificate Authority set.
        • Option authentication.x509.clientCAFile set.
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-fxp69
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-qfsgx
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-rcmph
      • 242421 (Medium) - Kubernetes Controller Manager must have the SSL Certificate Authority set.
        • Option root-ca-file set.
          • aws
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
      • 242422 (Medium) - Kubernetes API Server must have a certificate for communication.
        • Option tls-cert-file set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
        • Option tls-private-key-file set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242423 (Medium) - Kubernetes etcd must enable client authentication to secure service.
        • Option client-transport-security.client-cert-auth set to allowed value.
          • aws
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
          • azure
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
          • gcp
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
          • openstack
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
      • 242424 (Medium) - Kubernetes Kubelet must enable tlsPrivateKeyFile for client authentication to secure service.
        • Kubelet rotates server certificates automatically itself.
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-fxp69
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-qfsgx
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-rcmph
      • 242425 (Medium) - Kubernetes Kubelet must enable tlsCertFile for client authentication to secure service.
        • Kubelet rotates server certificates automatically itself.
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-fxp69
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-qfsgx
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-rcmph
      • 242427 (Medium) - Kubernetes etcd must have a key file for secure communication.
        • Option client-transport-security.key-file set to allowed value.
          • aws
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
          • azure
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
          • gcp
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
          • openstack
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
      • 242428 (Medium) - Kubernetes etcd must have a certificate for communication.
        • Option client-transport-security.cert-file set to allowed value.
          • aws
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
          • azure
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
          • gcp
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
          • openstack
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
      • 242429 (Medium) - Kubernetes etcd must have the SSL Certificate Authority set.
        • Option etcd-cafile set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242430 (Medium) - Kubernetes etcd must have a certificate for communication.
        • Option etcd-certfile set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242431 (Medium) - Kubernetes etcd must have a key file for secure communication.
        • Option etcd-keyfile set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242434 (High) - Kubernetes Kubelet must enable kernel protection.
        • Option protectKernelDefaults set to allowed value.
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-fxp69
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-qfsgx
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-rcmph
      • 242436 (High) - The Kubernetes API server must have the ValidatingAdmissionWebhook enabled.
        • Option enable-admission-plugins defaults to allowed value.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242438 (Medium) - Kubernetes API Server must configure timeouts to limit attack surface.
        • Option request-timeout has not been set.
          • aws
            • details: defaults to 1m0s kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • details: defaults to 1m0s kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • details: defaults to 1m0s kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • details: defaults to 1m0s kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242442 (Medium) - Kubernetes must remove old components after updated versions have been installed.
        • All found images use current versions.
          • aws
          • azure
          • gcp
          • openstack
      • 242445 (Medium) - The Kubernetes component etcd must be owned by etcd.
        • File has expected owners
          • aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_47.3236691540/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_47.1234375851/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_47.1234375851/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_47.814767563/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_47.2507078881/etcd.conf.yaml, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_47.2189774437/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_47.2189774437/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_47.3236691540/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_48.3539674948/accessKeyID, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_48.3539674948/secretAccessKey, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_48.3539674948/region, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_48.3539674948/bucketName, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_48.3729703620/etcd.conf.yaml, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_48.4190360279/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_48.4190360279/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_48.2111729789/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/temp/etcd-backup-830783567, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_48.2111729789/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_48.3068089721/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_48.3068089721/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_48.3022493222/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
          • azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_04_05.1884359283/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_04_05.2819217335/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_04_05.2819217335/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_04_05.3551695706/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_04_05.381575418/domain, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_04_05.381575418/bucketName, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_04_05.381575418/storageKey, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_04_05.381575418/storageAccount, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_04_05.3242051991/etcd.conf.yaml, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_04_05.4236924203/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_04_05.4236924203/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_04_05.1884359283/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_51.1703838406/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_51.3379384899/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_51.3379384899/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_51.298810863/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_51.3279698374/etcd.conf.yaml, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_51.3005860959/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_51.3005860959/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_51.1703838406/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
          • gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_44.2624424853/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_44.1967703035/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_44.1967703035/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_44.2230062681/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_44.2490249183/serviceaccount.json, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_44.2490249183/bucketName, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_44.1861097722/etcd.conf.yaml, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_44.1610666838/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_44.1610666838/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_44.2624424853/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.62406846/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.1928367486/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.1928367486/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_45.239862995/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_45.1976845120/etcd.conf.yaml, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.3035585522/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.3035585522/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.62406846/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
          • openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_46.4106566174/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_46.2952877655/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_46.2952877655/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_46.2556529009/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/domainName, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/bucketName, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/authURL, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/applicationCredentialSecret, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/applicationCredentialName, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/applicationCredentialID, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/tenantName, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/region, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_46.888502769/etcd.conf.yaml, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_46.416750044/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_46.416750044/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_46.4106566174/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.734858377/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.3666344165/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.3666344165/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_45.2967700781/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/safe_guard, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/wal/0.tmp, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/snap/db, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_45.3742503501/etcd.conf.yaml, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.4068604586/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.4068604586/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.734858377/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/namespace, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/token, ownerUser: 65532, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
      • 242446 (Medium) - The Kubernetes conf files must be owned by root.
        • File has expected owners
          • aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca/..2025_12_15_01_08_14.1518949358/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_08_14.4293596026/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_08_14.4293596026/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_08_14.3288154299/id_rsa, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/server/..2025_12_15_01_08_14.2731275347/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/server/..2025_12_15_01_08_14.2731275347/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_08_14.1198593183/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_08_14.1198593183/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_08_14.1362607708/token, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_08_14.1362607708/kubeconfig, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca/..2025_12_15_01_04_46.306583981/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_04_46.1055845442/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_04_46.701756304/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_04_46.1816610780/id_rsa, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_04_46.965780188/bundle.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/static-token/..2025_12_15_01_04_46.2024458994/static_tokens.csv, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_46.221677467/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_46.221677467/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_46.500292552/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_46.500292552/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/audit-policy-config/..2025_12_15_01_04_46.3264775044/audit-policy.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_04_46.1199422817/admission-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_04_46.1199422817/podsecurity.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/etcd-encryption-secret/..2025_12_15_01_04_46.1982693133/encryption-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_04_46.3242728691/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/egress-selection-config/..2025_12_15_01_04_46.3686625615/egress-selector-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_04_46.1600320557/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_46.1186839506/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_46.1186839506/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_04_46.1163851308/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_46.2348594722/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_46.2348594722/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/authentication-config/..2025_12_15_01_04_46.3238257022/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/authorization-config/..2025_12_15_01_04_46.3111459606/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/authorization-kubeconfigs/..2025_12_15_01_04_46.1840088815/node-agent-authorizer-kubeconfig.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_46.1851105193/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_46.1851105193/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_06_08.281972310/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_06_08.1199024389/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_06_08.1199024389/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~configmap/kube-scheduler-config/..2025_12_15_01_06_08.1564352628/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_06_08.3705466656/token, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_06_08.3705466656/kubeconfig, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
          • azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca/..2025_12_15_01_09_18.3125701906/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_18.3210524424/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_09_18.3053890756/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_09_18.2146940285/id_rsa, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_09_18.3617232764/bundle.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/static-token/..2025_12_15_01_09_18.1806788444/static_tokens.csv, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_09_18.980232277/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_09_18.980232277/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_18.1531163898/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_18.1531163898/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/audit-policy-config/..2025_12_15_01_09_18.3710493172/audit-policy.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_09_18.806615868/admission-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_09_18.806615868/podsecurity.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/etcd-encryption-secret/..2025_12_15_01_09_18.1389313973/encryption-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_09_18.3675171398/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/egress-selection-config/..2025_12_15_01_09_18.2354803947/egress-selector-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_18.1982616625/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_09_18.124734081/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_09_18.124734081/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_09_18.301193179/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_09_18.2639144668/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_09_18.2639144668/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/authentication-config/..2025_12_15_01_09_18.2446940192/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/authorization-config/..2025_12_15_01_09_18.3045311649/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/authorization-kubeconfigs/..2025_12_15_01_09_18.2341768664/node-agent-authorizer-kubeconfig.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_09_18.656564637/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_09_18.656564637/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca/..2025_12_15_01_11_16.2237918576/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_11_16.397896793/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_11_16.397896793/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_11_16.371425071/id_rsa, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/server/..2025_12_15_01_11_16.4188041299/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/server/..2025_12_15_01_11_16.4188041299/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_11_16.711765000/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_11_16.711765000/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_11_16.2668853396/token, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_11_16.2668853396/kubeconfig, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_12_16.1344915080/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_12_16.916417068/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_12_16.916417068/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~configmap/kube-scheduler-config/..2025_12_15_01_12_16.1430446370/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_12_16.2203622389/token, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_12_16.2203622389/kubeconfig, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
          • gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca/..2025_12_15_01_03_53.2542224645/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_03_53.2736402790/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_03_53.4028905329/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_03_53.2562540350/id_rsa, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_03_53.3631713499/bundle.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/static-token/..2025_12_15_01_03_53.2254611163/static_tokens.csv, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_03_53.1078004431/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_03_53.1078004431/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/server/..2025_12_15_01_03_53.339125761/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/server/..2025_12_15_01_03_53.339125761/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/audit-policy-config/..2025_12_15_01_03_53.4291574146/audit-policy.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_03_53.3545064193/admission-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_03_53.3545064193/podsecurity.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/etcd-encryption-secret/..2025_12_15_01_03_53.2429112654/encryption-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_03_53.535487335/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/egress-selection-config/..2025_12_15_01_03_53.664471657/egress-selector-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_03_53.3892004423/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_03_53.2318683733/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_03_53.2318683733/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_03_53.3684951809/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_03_53.1259883865/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_03_53.1259883865/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/authentication-config/..2025_12_15_01_03_53.459182128/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/authorization-config/..2025_12_15_01_03_53.3308092438/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/authorization-kubeconfigs/..2025_12_15_01_03_53.3549096912/node-agent-authorizer-kubeconfig.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_03_53.2219270813/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_03_53.2219270813/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca/..2025_12_15_01_09_03.3501360820/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_03.3924304742/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_03.3924304742/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_09_03.2542483150/id_rsa, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_03.1545828315/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_03.1545828315/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_03.1300463316/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_03.1300463316/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_09_03.3897161909/token, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_09_03.3897161909/kubeconfig, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/7920778d-e655-4ab3-8022-5b32f2838699/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_22_03.1496313537/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/7920778d-e655-4ab3-8022-5b32f2838699/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_22_03.3515694770/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/7920778d-e655-4ab3-8022-5b32f2838699/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_22_03.3515694770/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/7920778d-e655-4ab3-8022-5b32f2838699/volumes/kubernetes.io~configmap/kube-scheduler-config/..2025_12_15_01_22_03.3025293123/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/7920778d-e655-4ab3-8022-5b32f2838699/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_22_03.4010202397/kubeconfig, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/7920778d-e655-4ab3-8022-5b32f2838699/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_22_03.4010202397/token, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
          • openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca/..2025_12_15_01_10_51.1009524768/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_10_51.3964491962/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_10_51.3964491962/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_10_51.663031214/id_rsa, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/server/..2025_12_15_01_10_51.1917149921/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/server/..2025_12_15_01_10_51.1917149921/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_10_51.784714103/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_10_51.784714103/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_10_51.2087631075/token, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_10_51.2087631075/kubeconfig, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_11_50.1437946637/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_11_50.514713056/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_11_50.514713056/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~configmap/kube-scheduler-config/..2025_12_15_01_11_50.927145933/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_11_50.421433247/token, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_11_50.421433247/kubeconfig, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca/..2025_12_15_01_04_39.4061156172/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_04_39.577763178/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_04_39.1252360289/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_04_39.287749371/id_rsa, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_04_39.306837276/bundle.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/static-token/..2025_12_15_01_04_39.1994613086/static_tokens.csv, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_39.203701541/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_39.203701541/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_39.2934719073/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_39.2934719073/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/audit-policy-config/..2025_12_15_01_04_39.654871176/audit-policy.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_04_39.1282600849/admission-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_04_39.1282600849/podsecurity.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/etcd-encryption-secret/..2025_12_15_01_04_39.1551182706/encryption-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_04_39.2395808748/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/egress-selection-config/..2025_12_15_01_04_39.3349512000/egress-selector-configuration.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_04_39.1473261794/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_39.3012376360/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_39.3012376360/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_04_39.1014866955/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_39.364984436/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_39.364984436/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/authentication-config/..2025_12_15_01_04_39.4267634443/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/authorization-config/..2025_12_15_01_04_39.3077859974/config.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/authorization-kubeconfigs/..2025_12_15_01_04_39.2123772175/node-agent-authorizer-kubeconfig.yaml, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_39.594890804/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_39.594890804/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242447 (Medium) - The Kubernetes Kube Proxy kubeconfig must have file permissions set to 644 or more restrictive.
        • File has expected permissions
          • aws
            • details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~configmap/kube-proxy-config/config.yaml, permissions: 644 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~secret/kubeconfig/kubeconfig, permissions: 644 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
          • azure
            • details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~configmap/kube-proxy-config/config.yaml, permissions: 644 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~secret/kubeconfig/kubeconfig, permissions: 644 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
          • gcp
            • details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~configmap/kube-proxy-config/config.yaml, permissions: 644 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~secret/kubeconfig/kubeconfig, permissions: 644 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
          • openstack
            • details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~configmap/kube-proxy-config/config.yaml, permissions: 644 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~secret/kubeconfig/kubeconfig, permissions: 644 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
      • 242448 (Medium) - The Kubernetes Kube Proxy kubeconfig must be owned by root.
        • File has expected owners
          • aws
            • details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~configmap/kube-proxy-config/config.yaml, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~secret/kubeconfig/kubeconfig, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
          • azure
            • details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~configmap/kube-proxy-config/config.yaml, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~secret/kubeconfig/kubeconfig, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
          • gcp
            • details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~configmap/kube-proxy-config/config.yaml, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~secret/kubeconfig/kubeconfig, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
          • openstack
            • details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~configmap/kube-proxy-config/config.yaml, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~secret/kubeconfig/kubeconfig, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
      • 242449 (Medium) - The Kubernetes Kubelet certificate authority file must have file permissions set to 644 or more restrictive.
        • File has expected permissions
          • aws
            • details: fileName: /var/lib/kubelet/ca.crt, permissions: 644 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • details: fileName: /var/lib/kubelet/ca.crt, permissions: 644 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
          • gcp
            • details: fileName: /var/lib/kubelet/ca.crt, permissions: 644 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
          • openstack
            • details: fileName: /var/lib/kubelet/ca.crt, permissions: 644 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
      • 242450 (Medium) - The Kubernetes Kubelet certificate authority must be owned by root.
        • File has expected owners
          • aws
            • details: fileName: /var/lib/kubelet/ca.crt, ownerUser: 0, ownerGroup: 0 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • details: fileName: /var/lib/kubelet/ca.crt, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
          • gcp
            • details: fileName: /var/lib/kubelet/ca.crt, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
          • openstack
            • details: fileName: /var/lib/kubelet/ca.crt, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
      • 242451 (Medium) - The Kubernetes component PKI must be owned by root.
        • File has expected owners
          • aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_48.2111729789/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_48.3068089721/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_48.3068089721/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_48.3022493222/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_48.2111729789, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_48.3068089721, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_48.3022493222, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_48.4190360279/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_48.4190360279/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_48.2111729789/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_48.4190360279, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_48.2111729789, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_47.3236691540/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_47.1234375851/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_47.1234375851/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_47.814767563/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_47.814767563, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_47.3236691540, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_47.1234375851, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_47.2189774437/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_47.2189774437/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_47.3236691540/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_47.2189774437, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_47.3236691540, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca/..2025_12_15_01_04_46.306583981/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_04_46.1055845442/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_04_46.701756304/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_04_46.965780188/bundle.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_46.221677467/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_46.221677467/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_46.500292552/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_46.500292552/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_04_46.3242728691/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_04_46.1600320557/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_46.1186839506/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_46.1186839506/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_04_46.1163851308/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_46.2348594722/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_46.2348594722/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_46.1851105193/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_46.1851105193/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_04_46.1163851308, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_46.1851105193, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca/..2025_12_15_01_04_46.306583981, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_04_46.965780188, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_46.221677467, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_04_46.1600320557, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_46.1186839506, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_46.2348594722, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_04_46.1055845442, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_04_46.701756304, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_46.500292552, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_04_46.3242728691, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_06_08.281972310/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_06_08.1199024389/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_06_08.1199024389/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_06_08.281972310, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_06_08.1199024389, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca/..2025_12_15_01_08_14.1518949358/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_08_14.4293596026/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_08_14.4293596026/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/server/..2025_12_15_01_08_14.2731275347/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/server/..2025_12_15_01_08_14.2731275347/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_08_14.1198593183/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_08_14.1198593183/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_08_14.4293596026, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/server/..2025_12_15_01_08_14.2731275347, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_08_14.1198593183, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca/..2025_12_15_01_08_14.1518949358, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-07-44.pem, ownerUser: 0, ownerGroup: 0 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-07-56.pem, ownerUser: 0, ownerGroup: 0 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • cluster: shoot details: fileName: /var/lib/kubelet/pki, ownerUser: 0, ownerGroup: 0 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
          • azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_51.1703838406/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_51.3379384899/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_51.3379384899/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_51.298810863/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_51.1703838406, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_51.3379384899, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_51.298810863, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_51.3005860959/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_51.3005860959/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_51.1703838406/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_51.3005860959, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_51.1703838406, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca/..2025_12_15_01_09_18.3125701906/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_18.3210524424/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_09_18.3053890756/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_09_18.3617232764/bundle.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_09_18.980232277/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_09_18.980232277/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_18.1531163898/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_18.1531163898/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_09_18.3675171398/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_18.1982616625/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_09_18.124734081/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_09_18.124734081/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_09_18.301193179/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_09_18.2639144668/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_09_18.2639144668/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_09_18.656564637/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_09_18.656564637/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_09_18.656564637, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_18.3210524424, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_09_18.3617232764, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_09_18.980232277, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_18.1531163898, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_09_18.3675171398, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_18.1982616625, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_09_18.124734081, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_09_18.301193179, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca/..2025_12_15_01_09_18.3125701906, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_09_18.3053890756, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_09_18.2639144668, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca/..2025_12_15_01_11_16.2237918576/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_11_16.397896793/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_11_16.397896793/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/server/..2025_12_15_01_11_16.4188041299/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/server/..2025_12_15_01_11_16.4188041299/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_11_16.711765000/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_11_16.711765000/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca/..2025_12_15_01_11_16.2237918576, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_11_16.397896793, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/server/..2025_12_15_01_11_16.4188041299, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_11_16.711765000, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_12_16.1344915080/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_12_16.916417068/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_12_16.916417068/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_12_16.1344915080, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_12_16.916417068, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_04_05.1884359283/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_04_05.2819217335/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_04_05.2819217335/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_04_05.3551695706/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_04_05.3551695706, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_04_05.1884359283, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_04_05.2819217335, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_04_05.4236924203/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_04_05.4236924203/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_04_05.1884359283/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_04_05.4236924203, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_04_05.1884359283, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-09-34.pem, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-10-05.pem, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • cluster: shoot details: fileName: /var/lib/kubelet/pki, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
          • gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca/..2025_12_15_01_03_53.2542224645/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_03_53.2736402790/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_03_53.4028905329/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_03_53.3631713499/bundle.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_03_53.1078004431/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_03_53.1078004431/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/server/..2025_12_15_01_03_53.339125761/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/server/..2025_12_15_01_03_53.339125761/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_03_53.535487335/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_03_53.3892004423/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_03_53.2318683733/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_03_53.2318683733/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_03_53.3684951809/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_03_53.1259883865/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_03_53.1259883865/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_03_53.2219270813/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_03_53.2219270813/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_03_53.3684951809, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca/..2025_12_15_01_03_53.2542224645, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_03_53.2736402790, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_03_53.3631713499, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/server/..2025_12_15_01_03_53.339125761, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_03_53.1259883865, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_03_53.2219270813, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_03_53.4028905329, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_03_53.1078004431, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_03_53.535487335, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_03_53.3892004423, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_03_53.2318683733, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca/..2025_12_15_01_09_03.3501360820/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_03.3924304742/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_03.3924304742/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_03.1545828315/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_03.1545828315/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_03.1300463316/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_03.1300463316/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca/..2025_12_15_01_09_03.3501360820, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_03.3924304742, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_03.1545828315, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_03.1300463316, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_05_15.2957901773/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_05_15.201304394/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_05_15.201304394/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_05_15.2957901773, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_05_15.201304394, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_44.2624424853/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_44.1967703035/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_44.1967703035/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_44.2230062681/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_44.2624424853, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_44.1967703035, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_44.2230062681, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_44.1610666838/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_44.1610666838/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_44.2624424853/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_44.1610666838, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_44.2624424853, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.62406846/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.1928367486/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.1928367486/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_45.239862995/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.1928367486, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_45.239862995, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.62406846, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.3035585522/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.3035585522/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.62406846/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.3035585522, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.62406846, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-06-53.pem, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-07-26.pem, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • cluster: shoot details: fileName: /var/lib/kubelet/pki, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
          • openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_46.4106566174/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_46.2952877655/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_46.2952877655/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_46.2556529009/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_46.4106566174, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_46.2952877655, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_46.2556529009, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_46.416750044/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_46.416750044/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_46.4106566174/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_46.416750044, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_46.4106566174, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.734858377/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.3666344165/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.3666344165/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_45.2967700781/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_45.2967700781, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.734858377, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.3666344165, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.4068604586/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.4068604586/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.734858377/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.key, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.4068604586, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.734858377, ownerUser: 0, ownerGroup: 65532 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_11_50.1437946637/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_11_50.514713056/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_11_50.514713056/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_11_50.1437946637, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_11_50.514713056, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca/..2025_12_15_01_10_51.1009524768/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_10_51.3964491962/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_10_51.3964491962/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/server/..2025_12_15_01_10_51.1917149921/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/server/..2025_12_15_01_10_51.1917149921/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_10_51.784714103/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_10_51.784714103/ca.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_10_51.3964491962, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/server/..2025_12_15_01_10_51.1917149921, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_10_51.784714103, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca/..2025_12_15_01_10_51.1009524768, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca/..2025_12_15_01_04_39.4061156172/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_04_39.577763178/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_04_39.1252360289/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_04_39.306837276/bundle.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_39.203701541/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_39.203701541/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_39.2934719073/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_39.2934719073/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_04_39.2395808748/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_04_39.1473261794/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_39.3012376360/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_39.3012376360/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_04_39.1014866955/bundle.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_39.364984436/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_39.364984436/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/ca.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_39.594890804/tls.key, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_39.594890804/tls.crt, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_04_39.2395808748, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_04_39.1014866955, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_39.364984436, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_04_39.577763178, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_04_39.1252360289, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_04_39.1473261794, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_39.3012376360, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_39.594890804, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca/..2025_12_15_01_04_39.4061156172, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_04_39.306837276, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_39.203701541, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_39.2934719073, ownerUser: 0, ownerGroup: 65532 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-07-57.pem, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-07-45.pem, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • cluster: shoot details: fileName: /var/lib/kubelet/pki, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959/ca.crt, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959, ownerUser: 0, ownerGroup: 0 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
      • 242452 (Medium) - The Kubernetes kubelet KubeConfig must have file permissions set to 644 or more restrictive.
        • File has expected permissions
          • aws
            • details: fileName: /var/lib/kubelet/kubeconfig-real, permissions: 600 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • details: fileName: /var/lib/kubelet/config/kubelet, permissions: 600 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • details: fileName: /var/lib/kubelet/kubeconfig-real, permissions: 600 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • details: fileName: /var/lib/kubelet/config/kubelet, permissions: 600 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
          • gcp
            • details: fileName: /var/lib/kubelet/kubeconfig-real, permissions: 600 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • details: fileName: /var/lib/kubelet/config/kubelet, permissions: 600 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
          • openstack
            • details: fileName: /var/lib/kubelet/kubeconfig-real, permissions: 600 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • details: fileName: /var/lib/kubelet/config/kubelet, permissions: 600 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
      • 242453 (Medium) - The Kubernetes kubelet KubeConfig file must be owned by root.
        • File has expected owners
          • aws
            • details: fileName: /var/lib/kubelet/kubeconfig-real, ownerUser: 0, ownerGroup: 0 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • details: fileName: /var/lib/kubelet/config/kubelet, ownerUser: 0, ownerGroup: 0 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • details: fileName: /var/lib/kubelet/kubeconfig-real, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • details: fileName: /var/lib/kubelet/config/kubelet, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
          • gcp
            • details: fileName: /var/lib/kubelet/kubeconfig-real, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • details: fileName: /var/lib/kubelet/config/kubelet, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
          • openstack
            • details: fileName: /var/lib/kubelet/kubeconfig-real, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • details: fileName: /var/lib/kubelet/config/kubelet, ownerUser: 0, ownerGroup: 0 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
      • 242459 (Medium) - The Kubernetes etcd must have file permissions set to 644 or more restrictive.
        • File has expected permissions
          • aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_48.2111729789/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_48.3068089721/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_48.3068089721/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_48.3022493222/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/token, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/namespace, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_48.3539674948/accessKeyID, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_48.3539674948/secretAccessKey, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_48.3539674948/region, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_48.3539674948/bucketName, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-d8b084ef-55b2-4b35-8793-74d3d1bd390c/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_48.3729703620/etcd.conf.yaml, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_48.4190360279/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_48.4190360279/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_48.2111729789/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/token, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/namespace, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_47.2507078881/etcd.conf.yaml, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_47.2189774437/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_47.2189774437/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_47.3236691540/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/token, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/namespace, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~csi/pv-shoot--garden--aws-ha-eu7-40ac1fcb-f75d-4e61-b559-e1bc224b963e/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_47.3236691540/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_47.1234375851/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_47.1234375851/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_47.814767563/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/token, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/namespace, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
          • azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_04_05.1884359283/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_04_05.2819217335/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_04_05.2819217335/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_04_05.3551695706/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/namespace, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/token, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_04_05.381575418/domain, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_04_05.381575418/bucketName, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_04_05.381575418/storageKey, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_04_05.381575418/storageAccount, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-41d6a386-abeb-4ccb-a9a4-19698ed97d64/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_04_05.3242051991/etcd.conf.yaml, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_04_05.4236924203/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_04_05.4236924203/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_04_05.1884359283/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/namespace, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/token, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_51.1703838406/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_51.3379384899/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_51.3379384899/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_51.298810863/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/token, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/namespace, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~csi/pv-shoot--garden--az-ha-eu3-963185d2-147e-498f-b0c0-ea6396255f7b/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_51.3279698374/etcd.conf.yaml, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_51.3005860959/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_51.3005860959/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_51.1703838406/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/token, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/namespace, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
          • gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_44.2624424853/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_44.1967703035/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_44.1967703035/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_44.2230062681/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/namespace, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/token, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_44.2490249183/serviceaccount.json, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_44.2490249183/bucketName, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~csi/pv--f1368e67-e3f2-4b96-a4b4-037fa3f0fec3/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_44.1861097722/etcd.conf.yaml, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_44.1610666838/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_44.1610666838/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_44.2624424853/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/namespace, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/token, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.62406846/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.1928367486/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.1928367486/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_45.239862995/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/token, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/namespace, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~csi/pv--fd9462ca-01fa-4805-9895-20a6e1c394ad/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_45.1976845120/etcd.conf.yaml, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.3035585522/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.3035585522/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.62406846/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/token, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/namespace, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
          • openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_46.4106566174/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_46.2952877655/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_46.2952877655/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_46.2556529009/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/namespace, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/token, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/domainName, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/bucketName, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/authURL, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/applicationCredentialSecret, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/applicationCredentialName, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/applicationCredentialID, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/tenantName, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-backup-secret/..2025_12_15_01_02_46.1862416627/region, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-7bece4d2-c652-4eda-9e92-0833121f1763/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_46.888502769/etcd.conf.yaml, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_46.416750044/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_46.416750044/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_46.4106566174/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/namespace, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/token, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.734858377/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.3666344165/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.3666344165/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_45.2967700781/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/namespace, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/token, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/safe_guard, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/wal/0000000000000000-0000000000000000.wal, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/wal/0.tmp, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~csi/pv-shoot--garden--cc-ha-eu1-636e7c88-c35a-4d47-9042-e61521b0bcc2/mount/new.etcd/member/snap/db, permissions: 600 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~configmap/etcd-config-file/..2025_12_15_01_02_45.3742503501/etcd.conf.yaml, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.4068604586/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.4068604586/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.734858377/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/namespace, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/token, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
      • 242460 (Medium) - The Kubernetes admin.conf must have file permissions set to 644 or more restrictive.
        • File has expected permissions
          • aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca/..2025_12_15_01_08_14.1518949358/bundle.crt, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_08_14.4293596026/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_08_14.4293596026/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_08_14.3288154299/id_rsa, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/server/..2025_12_15_01_08_14.2731275347/tls.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/server/..2025_12_15_01_08_14.2731275347/tls.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_08_14.1198593183/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_08_14.1198593183/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_08_14.1362607708/token, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_08_14.1362607708/kubeconfig, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca/..2025_12_15_01_04_46.306583981/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_04_46.1055845442/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_04_46.701756304/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_04_46.1816610780/id_rsa, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_04_46.965780188/bundle.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/static-token/..2025_12_15_01_04_46.2024458994/static_tokens.csv, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_46.221677467/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_46.221677467/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_46.500292552/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_46.500292552/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/audit-policy-config/..2025_12_15_01_04_46.3264775044/audit-policy.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_04_46.1199422817/admission-configuration.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_04_46.1199422817/podsecurity.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/etcd-encryption-secret/..2025_12_15_01_04_46.1982693133/encryption-configuration.yaml, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_04_46.3242728691/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/egress-selection-config/..2025_12_15_01_04_46.3686625615/egress-selector-configuration.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_04_46.1600320557/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_46.1186839506/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_46.1186839506/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_04_46.1163851308/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_46.2348594722/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_46.2348594722/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/ca.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/authentication-config/..2025_12_15_01_04_46.3238257022/config.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~configmap/authorization-config/..2025_12_15_01_04_46.3111459606/config.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/authorization-kubeconfigs/..2025_12_15_01_04_46.1840088815/node-agent-authorizer-kubeconfig.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_46.1851105193/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_46.1851105193/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_06_08.281972310/bundle.crt, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_06_08.1199024389/tls.key, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_06_08.1199024389/tls.crt, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~configmap/kube-scheduler-config/..2025_12_15_01_06_08.1564352628/config.yaml, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_06_08.3705466656/token, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_06_08.3705466656/kubeconfig, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
          • azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca/..2025_12_15_01_09_18.3125701906/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_18.3210524424/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_09_18.3053890756/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_09_18.2146940285/id_rsa, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_09_18.3617232764/bundle.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/static-token/..2025_12_15_01_09_18.1806788444/static_tokens.csv, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_09_18.980232277/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_09_18.980232277/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_18.1531163898/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_18.1531163898/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/audit-policy-config/..2025_12_15_01_09_18.3710493172/audit-policy.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_09_18.806615868/admission-configuration.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_09_18.806615868/podsecurity.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/etcd-encryption-secret/..2025_12_15_01_09_18.1389313973/encryption-configuration.yaml, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_09_18.3675171398/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/egress-selection-config/..2025_12_15_01_09_18.2354803947/egress-selector-configuration.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_18.1982616625/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_09_18.124734081/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_09_18.124734081/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_09_18.301193179/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_09_18.2639144668/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_09_18.2639144668/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/ca.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/authentication-config/..2025_12_15_01_09_18.2446940192/config.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~configmap/authorization-config/..2025_12_15_01_09_18.3045311649/config.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/authorization-kubeconfigs/..2025_12_15_01_09_18.2341768664/node-agent-authorizer-kubeconfig.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_09_18.656564637/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_09_18.656564637/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca/..2025_12_15_01_11_16.2237918576/bundle.crt, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_11_16.397896793/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_11_16.397896793/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_11_16.371425071/id_rsa, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/server/..2025_12_15_01_11_16.4188041299/tls.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/server/..2025_12_15_01_11_16.4188041299/tls.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_11_16.711765000/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_11_16.711765000/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_11_16.2668853396/token, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_11_16.2668853396/kubeconfig, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_12_16.1344915080/bundle.crt, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_12_16.916417068/tls.key, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_12_16.916417068/tls.crt, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~configmap/kube-scheduler-config/..2025_12_15_01_12_16.1430446370/config.yaml, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_12_16.2203622389/token, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_12_16.2203622389/kubeconfig, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
          • gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca/..2025_12_15_01_03_53.2542224645/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_03_53.2736402790/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_03_53.4028905329/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_03_53.2562540350/id_rsa, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_03_53.3631713499/bundle.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/static-token/..2025_12_15_01_03_53.2254611163/static_tokens.csv, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_03_53.1078004431/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_03_53.1078004431/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/server/..2025_12_15_01_03_53.339125761/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/server/..2025_12_15_01_03_53.339125761/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/audit-policy-config/..2025_12_15_01_03_53.4291574146/audit-policy.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_03_53.3545064193/admission-configuration.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_03_53.3545064193/podsecurity.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/etcd-encryption-secret/..2025_12_15_01_03_53.2429112654/encryption-configuration.yaml, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_03_53.535487335/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/egress-selection-config/..2025_12_15_01_03_53.664471657/egress-selector-configuration.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_03_53.3892004423/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_03_53.2318683733/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_03_53.2318683733/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_03_53.3684951809/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_03_53.1259883865/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_03_53.1259883865/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/ca.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/authentication-config/..2025_12_15_01_03_53.459182128/config.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~configmap/authorization-config/..2025_12_15_01_03_53.3308092438/config.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/authorization-kubeconfigs/..2025_12_15_01_03_53.3549096912/node-agent-authorizer-kubeconfig.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_03_53.2219270813/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_03_53.2219270813/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca/..2025_12_15_01_09_03.3501360820/bundle.crt, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_03.3924304742/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_03.3924304742/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_09_03.2542483150/id_rsa, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_03.1545828315/tls.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_03.1545828315/tls.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_03.1300463316/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_03.1300463316/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_09_03.3897161909/token, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_09_03.3897161909/kubeconfig, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_05_15.2957901773/bundle.crt, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_05_15.201304394/tls.key, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_05_15.201304394/tls.crt, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~configmap/kube-scheduler-config/..2025_12_15_01_05_15.3631151190/config.yaml, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_05_15.2647646064/kubeconfig, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_05_15.2647646064/token, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
          • openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca/..2025_12_15_01_10_51.1009524768/bundle.crt, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_10_51.3964491962/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_10_51.3964491962/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_10_51.663031214/id_rsa, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/server/..2025_12_15_01_10_51.1917149921/tls.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/server/..2025_12_15_01_10_51.1917149921/tls.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_10_51.784714103/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_10_51.784714103/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_10_51.2087631075/token, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_10_51.2087631075/kubeconfig, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_11_50.1437946637/bundle.crt, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_11_50.514713056/tls.crt, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_11_50.514713056/tls.key, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~configmap/kube-scheduler-config/..2025_12_15_01_11_50.927145933/config.yaml, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_11_50.421433247/token, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~projected/kubeconfig/..2025_12_15_01_11_50.421433247/kubeconfig, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca/..2025_12_15_01_04_39.4061156172/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_04_39.577763178/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_04_39.1252360289/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/service-account-key/..2025_12_15_01_04_39.287749371/id_rsa, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_04_39.306837276/bundle.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/static-token/..2025_12_15_01_04_39.1994613086/static_tokens.csv, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_39.203701541/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_39.203701541/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_39.2934719073/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_39.2934719073/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/audit-policy-config/..2025_12_15_01_04_39.654871176/audit-policy.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_04_39.1282600849/admission-configuration.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/admission-config/..2025_12_15_01_04_39.1282600849/podsecurity.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/etcd-encryption-secret/..2025_12_15_01_04_39.1551182706/encryption-configuration.yaml, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_04_39.2395808748/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/egress-selection-config/..2025_12_15_01_04_39.3349512000/egress-selector-configuration.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_04_39.1473261794/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_39.3012376360/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_39.3012376360/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_04_39.1014866955/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_39.364984436/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_39.364984436/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/ca.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/authentication-config/..2025_12_15_01_04_39.4267634443/config.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~configmap/authorization-config/..2025_12_15_01_04_39.3077859974/config.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/authorization-kubeconfigs/..2025_12_15_01_04_39.2123772175/node-agent-authorizer-kubeconfig.yaml, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_39.594890804/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_39.594890804/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242461 (Medium) - The Kubernetes API Server audit logs must be enabled.
        • Option audit-policy-file set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 242466 (Medium) - The Kubernetes PKI CRT must have file permissions set to 644 or more restrictive.
        • File has expected permissions
          • aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_48.2111729789/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_48.3068089721/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_48.3022493222/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_48.4190360279/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_48.2111729789/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_48.1445640602/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_47.3236691540/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_47.1234375851/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_47.814767563/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_47.2189774437/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_47.3236691540/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_47.992349020/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca/..2025_12_15_01_04_46.306583981/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_04_46.1055845442/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_04_46.701756304/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_46.221677467/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_46.500292552/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_04_46.3242728691/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_04_46.1600320557/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_46.1186839506/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_04_46.1163851308/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_46.2348594722/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/ca.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_46.1851105193/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_06_08.281972310/bundle.crt, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_06_08.1199024389/tls.crt, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca/..2025_12_15_01_08_14.1518949358/bundle.crt, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_08_14.4293596026/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/server/..2025_12_15_01_08_14.2731275347/tls.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_08_14.1198593183/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-07-44.pem, permissions: 600 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-07-56.pem, permissions: 600 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/c2094993-f2da-41bd-bb20-4c32fdc29d65/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_07_38.2168681920/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
          • azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_04_05.1884359283/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_04_05.2819217335/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_04_05.3551695706/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_04_05.4236924203/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_04_05.1884359283/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_04_05.1109752642/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_51.1703838406/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_51.3379384899/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_51.298810863/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_51.3005860959/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_51.1703838406/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_51.1541228823/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca/..2025_12_15_01_09_18.3125701906/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_18.3210524424/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_09_18.3053890756/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_09_18.980232277/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_18.1531163898/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_09_18.3675171398/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_18.1982616625/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_09_18.124734081/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_09_18.301193179/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_09_18.2639144668/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/ca.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_09_18.656564637/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca/..2025_12_15_01_11_16.2237918576/bundle.crt, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_11_16.397896793/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/server/..2025_12_15_01_11_16.4188041299/tls.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_11_16.711765000/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_12_16.1344915080/bundle.crt, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_12_16.916417068/tls.crt, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-09-34.pem, permissions: 600 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-10-05.pem, permissions: 600 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/cf8f4163-96d7-4784-8742-1c919a5952cc/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_35.3036458571/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
          • gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_44.2624424853/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_44.1967703035/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_44.2230062681/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_44.1610666838/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_44.2624424853/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_44.1785777463/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.3035585522/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.62406846/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.62406846/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.1928367486/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_45.239862995/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1731486289/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca/..2025_12_15_01_03_53.2542224645/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_03_53.2736402790/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_03_53.4028905329/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_03_53.1078004431/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/server/..2025_12_15_01_03_53.339125761/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_03_53.535487335/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_03_53.3892004423/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_03_53.2318683733/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_03_53.3684951809/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_03_53.1259883865/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/ca.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_03_53.2219270813/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca/..2025_12_15_01_09_03.3501360820/bundle.crt, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_03.3924304742/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_03.1545828315/tls.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_03.1300463316/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_05_15.2957901773/bundle.crt, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_05_15.201304394/tls.crt, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-06-53.pem, permissions: 600 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-07-26.pem, permissions: 600 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/43f60933-0899-4b22-acd1-8189ace45b77/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_06_58.718953236/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
          • openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca/..2025_12_15_01_10_51.1009524768/bundle.crt, permissions: 644 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_10_51.3964491962/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/server/..2025_12_15_01_10_51.1917149921/tls.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_10_51.784714103/ca.crt, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca/..2025_12_15_01_04_39.4061156172/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_04_39.577763178/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-front-proxy/..2025_12_15_01_04_39.1252360289/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_39.203701541/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_39.2934719073/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-vpn/..2025_12_15_01_04_39.2395808748/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_04_39.1473261794/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_39.3012376360/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/ca-etcd/..2025_12_15_01_04_39.1014866955/bundle.crt, permissions: 644 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_39.364984436/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/ca.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_39.594890804/tls.crt, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.4068604586/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.734858377/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_45.734858377/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.3666344165/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_45.2967700781/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_45.1707163891/ca.crt, permissions: 644 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~projected/client-ca/..2025_12_15_01_11_50.1437946637/bundle.crt, permissions: 644 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_11_50.514713056/tls.crt, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_46.4106566174/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_46.2952877655/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-ca/..2025_12_15_01_02_46.2556529009/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_46.416750044/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-ca/..2025_12_15_01_02_46.4106566174/bundle.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.crt, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_02_46.3927765011/ca.crt, permissions: 644 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-07-57.pem, permissions: 600 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-07-45.pem, permissions: 600 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • cluster: shoot containerName: kube-proxy-init details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: kube-proxy details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: conntrack-fix details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • cluster: shoot containerName: cleanup details: fileName: /var/lib/kubelet/pods/bacef420-fd44-46c1-8236-05f5ca26f138/volumes/kubernetes.io~projected/kube-api-access-gardener/..2025_12_15_01_09_03.174309959/ca.crt, permissions: 644 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
      • 242467 (Medium) - The Kubernetes PKI keys must have file permissions set to 600 or more restrictive.
        • File has expected permissions
          • aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_48.3068089721/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_48.4190360279/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/d8212267-65f5-427c-a4c1-e702411bd431/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_48.1138127515/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_47.1234375851/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_47.2189774437/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/30236e4a-5461-4d5b-9aa5-46da63f9fc9e/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_47.2807556651/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_04_46.965780188/bundle.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_46.221677467/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_46.500292552/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_46.1186839506/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_46.2348594722/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_46.2819880290/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/599da3bd-223e-46e1-a0fb-72fb9a365ced/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_46.1851105193/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/bf05102f-7ae3-4af3-b854-ccfaaf9d8171/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_06_08.1199024389/tls.key, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_08_14.4293596026/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/server/..2025_12_15_01_08_14.2731275347/tls.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/f3f576ae-02ec-45db-a024-02e217c340d5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_08_14.1198593183/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--aws
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-07-44.pem, permissions: 600 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-07-56.pem, permissions: 600 kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_09_18.3617232764/bundle.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_09_18.980232277/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_18.1531163898/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_09_18.124734081/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_09_18.2639144668/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_09_18.1804567103/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/703e6c63-fe89-4923-9a6a-7a3dba102b8b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_09_18.656564637/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_11_16.397896793/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/server/..2025_12_15_01_11_16.4188041299/tls.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/948b154e-a034-4474-b0ac-c381fd8b9a9f/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_11_16.711765000/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--azure
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/b3030945-0d21-4c33-bf28-112ddb15fd90/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_12_16.916417068/tls.key, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_04_05.2819217335/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_04_05.4236924203/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/b2105d50-2dc5-4581-87b3-a986659ffcbf/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_04_05.3231184602/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_51.3379384899/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_51.3005860959/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/642048f5-41d0-4ff4-a79a-aa30f42f6d79/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_51.2702904434/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-09-34.pem, permissions: 600 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-10-05.pem, permissions: 600 kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
          • gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.3035585522/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.1928367486/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/771b10ec-e011-4a04-961a-01031fabe333/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.2080573973/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_03_53.3631713499/bundle.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_03_53.1078004431/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/server/..2025_12_15_01_03_53.339125761/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_03_53.2318683733/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_03_53.1259883865/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_03_53.3659122703/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/700ac678-5613-4d3b-82f1-8dfdcc4aa3ec/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_03_53.2219270813/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_09_03.3924304742/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/server/..2025_12_15_01_09_03.1545828315/tls.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/8b7dceae-8ea1-40b1-b440-397809b09ff5/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_09_03.1300463316/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/dd8c46b1-fc34-467d-9d0d-20e95ec5d13b/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_05_15.201304394/tls.key, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_44.1967703035/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_44.1610666838/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/e0e048f6-d9ba-4ed8-a189-49fac5e4603b/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_44.4225420408/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-06-53.pem, permissions: 600 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-07-26.pem, permissions: 600 kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
          • openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-client/..2025_12_15_01_10_51.3964491962/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/server/..2025_12_15_01_10_51.1917149921/tls.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-controller-manager details: fileName: /var/lib/kubelet/pods/5fc0ac2c-e457-4fb0-8676-41558568a658/volumes/kubernetes.io~secret/ca-kubelet/..2025_12_15_01_10_51.784714103/ca.key, permissions: 640 kind: Deployment name: kube-controller-manager namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_45.3666344165/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_45.4068604586/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/7dd63527-9bb3-496e-9706-2189a4ffaebd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_45.341623261/tls.key, permissions: 640 kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-scheduler details: fileName: /var/lib/kubelet/pods/d4d71d5d-6390-4d2c-8697-71d5f0a1aba0/volumes/kubernetes.io~secret/kube-scheduler-server/..2025_12_15_01_11_50.514713056/tls.key, permissions: 640 kind: Deployment name: kube-scheduler namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-server-tls/..2025_12_15_01_02_46.2952877655/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: etcd details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/backup-restore-server-tls/..2025_12_15_01_02_46.416750044/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: backup-restore details: fileName: /var/lib/kubelet/pods/242a0873-8c9b-4007-bf20-5895c9d0a6fd/volumes/kubernetes.io~secret/etcd-client-tls/..2025_12_15_01_02_46.87841968/tls.key, permissions: 640 kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/service-account-key-bundle/..2025_12_15_01_04_39.306837276/bundle.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kube-aggregator/..2025_12_15_01_04_39.203701541/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/server/..2025_12_15_01_04_39.2934719073/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/kubelet-client/..2025_12_15_01_04_39.3012376360/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/etcd-client/..2025_12_15_01_04_39.364984436/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/tls-sni-0/..2025_12_15_01_04_39.413245840/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: seed containerName: kube-apiserver details: fileName: /var/lib/kubelet/pods/0aa30882-8823-4763-978e-967c70c7292b/volumes/kubernetes.io~secret/http-proxy/..2025_12_15_01_04_39.594890804/tls.key, permissions: 640 kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-server-20IP-Address1-07-57.pem, permissions: 600 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • cluster: shoot details: fileName: /var/lib/kubelet/pki/kubelet-client-20IP-Address1-07-45.pem, permissions: 600 kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
      • 245541 (Medium) - Kubernetes Kubelet must not disable timeouts.
        • Option streamingConnectionIdleTimeout set to allowed value.
          • aws
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
            • kind: Node name: ip-IP-Address.eu-west-1.compute.internal
          • azure
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-4krps
            • kind: Node name: shoot--diki-comp--azure-worker-g7p4p-z3-68cdf-fxp69
          • gcp
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-445sv
            • kind: Node name: shoot--diki-comp--gcp-worker-bex82-z1-7b69d-qfsgx
          • openstack
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-52b4r
            • kind: Node name: shoot--diki-comp--openstack-worker-dqty2-z1-86d6d-rcmph
      • 245542 (High) - Kubernetes API Server must disable basic authentication to protect information in transit.
        • Option basic-auth-file has not been set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 245544 (High) - Kubernetes endpoints must use approved organizational certificate and key pair to protect information in transit.
        • Option kubelet-client-certificate set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
        • Option kubelet-client-key set.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
      • 254800 (High) - Kubernetes must have a Pod Security Admission control file configured.
        • PodSecurity is properly configured
          • aws
            • kind: PodSecurityConfiguration
          • azure
            • kind: PodSecurityConfiguration
          • gcp
            • kind: PodSecurityConfiguration
          • openstack
            • kind: PodSecurityConfiguration
      • 274882 (High) - Kubernetes Secrets must be encrypted at rest.
        • Secrets are encrypted at REST.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack
    • 🔵 Skipped
      • 242380 (Medium) - The Kubernetes etcd must use TLS to protect the confidentiality of sensitive data during electronic dissemination.
        • ETCD runs as a single instance, peer communication options are not used.
          • aws
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
          • azure
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
          • gcp
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
          • openstack
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
      • 242384 (Medium) - The Kubernetes Scheduler must have secure binding.
        • The Kubernetes Scheduler runs in a container which already has limited access to network interfaces. In addition ingress traffic to the Kubernetes Scheduler is restricted via network policies, making an unintended exposure less likely.
          • aws
          • azure
          • gcp
          • openstack
      • 242385 (Medium) - The Kubernetes Controller Manager must have secure binding.
        • The Kubernetes Controller Manager runs in a container which already has limited access to network interfaces. In addition ingress traffic to the Kubernetes Controller Manager is restricted via network policies, making an unintended exposure less likely.
          • aws
          • azure
          • gcp
          • openstack
      • 242396 (Medium) - Kubernetes Kubectl cp command must give expected access and results.
        • "kubectl" is not installed into control plane pods or worker nodes and Gardener does not offer Kubernetes v1.12 or older.
          • aws
          • azure
          • gcp
          • openstack
      • 242398 (Medium) - Kubernetes DynamicAuditing must not be enabled.
        • Option feature-gates.DynamicAuditing removed in Kubernetes v1.19.
          • aws
          • azure
          • gcp
          • openstack
      • 242399 (Medium) - Kubernetes DynamicKubeletConfig must not be enabled.
        • Option feature-gates.DynamicKubeletConfig removed in Kubernetes v1.26.
          • aws
          • azure
          • gcp
          • openstack
      • 242405 (Medium) - Kubernetes manifests must be owned by root.
        • Gardener does not deploy any control plane component as systemd processes or static pod.
          • aws
          • azure
          • gcp
          • openstack
      • 242408 (Medium) - The Kubernetes manifest files must have least privileges.
        • Gardener does not deploy any control plane component as systemd processes or static pod.
          • aws
          • azure
          • gcp
          • openstack
      • 242410 (Medium) - The Kubernetes API Server must enforce ports, protocols, and services (PPS) that adhere to the Ports, Protocols, and Services Management Category Assurance List (PPSM CAL).
        • Cannot be tested and should be enforced organizationally. Gardener uses a minimum of known and automatically opened/used/created ports/protocols/services (PPSM stands for Ports, Protocols, Service Management).
          • aws
          • azure
          • gcp
          • openstack
      • 242411 (Medium) - The Kubernetes Scheduler must enforce ports, protocols, and services (PPS) that adhere to the Ports, Protocols, and Services Management Category Assurance List (PPSM CAL).
        • Cannot be tested and should be enforced organizationally. Gardener uses a minimum of known and automatically opened/used/created ports/protocols/services (PPSM stands for Ports, Protocols, Service Management).
          • aws
          • azure
          • gcp
          • openstack
      • 242412 (Medium) - The Kubernetes Controllers must enforce ports, protocols, and services (PPS) that adhere to the Ports, Protocols, and Services Management Category Assurance List (PPSM CAL).
        • Cannot be tested and should be enforced organizationally. Gardener uses a minimum of known and automatically opened/used/created ports/protocols/services (PPSM stands for Ports, Protocols, Service Management).
          • aws
          • azure
          • gcp
          • openstack
      • 242413 (Medium) - The Kubernetes etcd must enforce ports, protocols, and services (PPS) that adhere to the Ports, Protocols, and Services Management Category Assurance List (PPSM CAL).
        • Cannot be tested and should be enforced organizationally. Gardener uses a minimum of known and automatically opened/used/created ports/protocols/services (PPSM stands for Ports, Protocols, Service Management).
          • aws
          • azure
          • gcp
          • openstack
      • 242426 (Medium) - Kubernetes etcd must enable client authentication to secure service.
        • ETCD runs as a single instance, peer communication options are not used.
          • aws
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
          • azure
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
          • gcp
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
          • openstack
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
      • 242432 (Medium) - Kubernetes etcd must have peer-cert-file set for secure communication.
        • ETCD runs as a single instance, peer communication options are not used.
          • aws
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
          • azure
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
          • gcp
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
          • openstack
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
      • 242433 (Medium) - Kubernetes etcd must have a peer-key-file set for secure communication.
        • ETCD runs as a single instance, peer communication options are not used.
          • aws
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--aws
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--aws
          • azure
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--azure
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--azure
          • gcp
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--gcp
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--gcp
          • openstack
            • kind: StatefulSet name: etcd-main namespace: shoot--diki-comp--openstack
            • kind: StatefulSet name: etcd-events namespace: shoot--diki-comp--openstack
      • 242437 (High) - Kubernetes must have a pod security policy set.
        • PSPs are removed in K8s version 1.25.
          • aws
          • azure
          • gcp
          • openstack
      • 242443 (Medium) - Kubernetes must contain the latest updates as authorized by IAVMs, CTOs, DTMs, and STIGs.
        • Scanning/patching security vulnerabilities should be enforced organizationally. Security vulnerability scanning should be automated and maintainers should be informed automatically.
          • aws
          • azure
          • gcp
          • openstack
      • 242444 (Medium) - Kubernetes component manifests must be owned by root.
        • Rule is duplicate of "242405"
          • aws
          • azure
          • gcp
          • openstack
      • 242454 (Medium) - Kubernetes kubeadm.conf must be owned by root.
        • Gardener does not use "kubeadm" and also does not store any "main config" anywhere in seed or shoot (flow/component logic built-in/in-code).
          • aws
          • azure
          • gcp
          • openstack
      • 242455 (Medium) - Kubernetes kubeadm.conf must have file permissions set to 644 or more restrictive.
        • Gardener does not use "kubeadm" and also does not store any "main config" anywhere in seed or shoot (flow/component logic built-in/in-code).
          • aws
          • azure
          • gcp
          • openstack
      • 242456 (Medium) - Kubernetes kubelet config must have file permissions set to 644 or more restrictive.
        • Rule is duplicate of "242452".
          • aws
          • azure
          • gcp
          • openstack
      • 242457 (Medium) - Kubernetes kubelet config must be owned by root.
        • Rule is duplicate of "242453".
          • aws
          • azure
          • gcp
          • openstack
      • 242465 (Medium) - Kubernetes API Server audit log path must be set.
        • Rule is duplicate of "242402"
          • aws
          • azure
          • gcp
          • openstack
      • 254801 (High) - Kubernetes must enable PodSecurity admission controller on static pods and Kubelets.
        • Option featureGates.PodSecurity was made GA in v1.25 and removed in v1.28.
          • aws
          • azure
          • gcp
          • openstack
      • 274883 (High) - Sensitive information must be stored using Kubernetes Secrets or an external Secret store provider.
        • Cannot be tested with confidence and should be enforced organizationally.
          • aws
          • azure
          • gcp
          • openstack
      • 274884 (Medium) - Kubernetes must limit Secret access on a need-to-know basis.
        • Cannot be tested with confidence and should be enforced organizationally.
          • aws
          • azure
          • gcp
          • openstack
    • 🔵 Accepted
      • 242402 (Medium) - The Kubernetes API Server must have an audit log path set.
        • Gardener can integrate with different audit logging solutions.
          • aws
          • azure
          • gcp
          • openstack
      • 242403 (Medium) - The Kubernetes API Server must generate audit records that identify what type of event has occurred, identify the source of the event, contain the event results, identify any users, and identify any containers associated with the event.
        • Gardener can integrate with different audit logging solutions.
          • aws
          • azure
          • gcp
          • openstack
      • 242414 (Medium) - The Kubernetes cluster must use non-privileged host ports for user pods.
        • Node local dns requires port 53 in order to operate properly.
          • aws
            • cluster: shoot container: node-cache details: port: 53 kind: DaemonSet name: node-local-dns-worker-kkfk1 namespace: kube-system
            • cluster: shoot container: node-cache details: port: 53 kind: DaemonSet name: node-local-dns-worker-kkfk1 namespace: kube-system
          • azure
            • cluster: shoot container: node-cache details: port: 53 kind: DaemonSet name: node-local-dns-worker-g7p4p namespace: kube-system
            • cluster: shoot container: node-cache details: port: 53 kind: DaemonSet name: node-local-dns-worker-g7p4p namespace: kube-system
          • gcp
            • cluster: shoot container: node-cache details: port: 53 kind: DaemonSet name: node-local-dns-worker-bex82 namespace: kube-system
            • cluster: shoot container: node-cache details: port: 53 kind: DaemonSet name: node-local-dns-worker-bex82 namespace: kube-system
          • openstack
            • cluster: shoot container: node-cache details: port: 53 kind: DaemonSet name: node-local-dns-worker-dqty2 namespace: kube-system
            • cluster: shoot container: node-cache details: port: 53 kind: DaemonSet name: node-local-dns-worker-dqty2 namespace: kube-system
      • 242415 (High) - Secrets in Kubernetes must not be stored as environment variables.
        • The aws sdk does not properly read the role_arn from the shared credentials file.
          • aws
            • cluster: seed container: aws-cloud-controller-manager details: variableName: AWS_WEB_IDENTITY_TOKEN_FILE, keyRef: workloadIdentityTokenFile kind: Deployment name: cloud-controller-manager namespace: shoot--diki-comp--aws
            • cluster: seed container: aws-cloud-controller-manager details: variableName: AWS_ROLE_ARN, keyRef: roleARN kind: Deployment name: cloud-controller-manager namespace: shoot--diki-comp--aws
      • 242462 (Medium) - The Kubernetes API Server must be set to audit log max size.
        • Gardener can integrate with different audit logging solutions.
          • aws
          • azure
          • gcp
          • openstack
      • 242463 (Medium) - The Kubernetes API Server must be set to audit log maximum backup.
        • Gardener can integrate with different audit logging solutions.
          • aws
          • azure
          • gcp
          • openstack
      • 242464 (Medium) - The Kubernetes API Server audit log retention must be set.
        • Gardener can integrate with different audit logging solutions.
          • aws
          • azure
          • gcp
          • openstack
      • 245543 (High) - Kubernetes API Server must disable token authentication to protect information in transit.
        • All defined tokens are accepted.
          • aws
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--aws
          • azure
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--azure
          • gcp
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--gcp
          • openstack
            • kind: Deployment name: kube-apiserver namespace: shoot--diki-comp--openstack

Evaluated targets
  • aws (gardenerVersion: v1.133.0, projectName: diki-comp, time: 12-15-2025 01:19:41)
  • azure (gardenerVersion: v1.133.0, projectName: diki-comp, time: 12-15-2025 01:21:10)
  • gcp (gardenerVersion: v1.133.0, projectName: diki-comp, time: 12-15-2025 01:22:30)
  • openstack (gardenerVersion: v1.133.0, projectName: diki-comp, time: 12-15-2025 01:24:46)
  • v0.1.0 Security Hardened Kubernetes Cluster (9x Passed 🟢, 5x Accepted 🔵)
    • 🟢 Passed
      • 2000 (High) - Ingress and egress traffic must be restricted by default.
        • Ingress traffic is denied by default.
          • aws
            • kind: NetworkPolicy name: deny-all namespace: default
            • kind: NetworkPolicy name: deny-all namespace: kube-node-lease
            • kind: NetworkPolicy name: deny-all namespace: kube-public
            • kind: NetworkPolicy name: gardener.cloud--deny-all namespace: kube-system
          • azure
            • kind: NetworkPolicy name: gardener.cloud--deny-all namespace: kube-system
            • kind: NetworkPolicy name: deny-all namespace: default
            • kind: NetworkPolicy name: deny-all namespace: kube-node-lease
            • kind: NetworkPolicy name: deny-all namespace: kube-public
          • gcp
            • kind: NetworkPolicy name: deny-all namespace: default
            • kind: NetworkPolicy name: deny-all namespace: kube-node-lease
            • kind: NetworkPolicy name: deny-all namespace: kube-public
            • kind: NetworkPolicy name: gardener.cloud--deny-all namespace: kube-system
          • openstack
            • kind: NetworkPolicy name: deny-all namespace: default
            • kind: NetworkPolicy name: deny-all namespace: kube-node-lease
            • kind: NetworkPolicy name: deny-all namespace: kube-public
            • kind: NetworkPolicy name: gardener.cloud--deny-all namespace: kube-system
        • Egress traffic is denied by default.
          • aws
            • kind: NetworkPolicy name: deny-all namespace: default
            • kind: NetworkPolicy name: deny-all namespace: kube-node-lease
            • kind: NetworkPolicy name: deny-all namespace: kube-public
            • kind: NetworkPolicy name: gardener.cloud--deny-all namespace: kube-system
          • azure
            • kind: NetworkPolicy name: gardener.cloud--deny-all namespace: kube-system
            • kind: NetworkPolicy name: deny-all namespace: default
            • kind: NetworkPolicy name: deny-all namespace: kube-node-lease
            • kind: NetworkPolicy name: deny-all namespace: kube-public
          • gcp
            • kind: NetworkPolicy name: deny-all namespace: default
            • kind: NetworkPolicy name: deny-all namespace: kube-node-lease
            • kind: NetworkPolicy name: deny-all namespace: kube-public
            • kind: NetworkPolicy name: gardener.cloud--deny-all namespace: kube-system
          • openstack
            • kind: NetworkPolicy name: deny-all namespace: default
            • kind: NetworkPolicy name: deny-all namespace: kube-node-lease
            • kind: NetworkPolicy name: deny-all namespace: kube-public
            • kind: NetworkPolicy name: gardener.cloud--deny-all namespace: kube-system
      • 2001 (High) - Containers must be forbidden to escalate privileges.
        • Pod does not escalate privileges.
          • aws
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • kind: DaemonSet name: node-exporter namespace: kube-system
            • kind: DaemonSet name: node-local-dns-worker-kkfk1 namespace: kube-system
          • azure
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: DaemonSet name: cloud-node-manager namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • kind: DaemonSet name: node-exporter namespace: kube-system
            • kind: DaemonSet name: node-local-dns-worker-g7p4p namespace: kube-system
          • gcp
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • kind: DaemonSet name: node-exporter namespace: kube-system
            • kind: DaemonSet name: node-local-dns-worker-bex82 namespace: kube-system
          • openstack
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-kube-controllers namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • kind: DaemonSet name: node-exporter namespace: kube-system
            • kind: DaemonSet name: node-local-dns-worker-dqty2 namespace: kube-system
      • 2002 (Medium) - Storage Classes should have a "Delete" reclaim policy.
        • StorageClass has a Delete ReclaimPolicy set.
          • aws
            • kind: StorageClass name: default
          • azure
            • kind: StorageClass name: default
            • kind: StorageClass name: files
            • kind: StorageClass name: managed-premium-ssd
            • kind: StorageClass name: managed-standard-hdd
            • kind: StorageClass name: managed-standard-ssd
          • gcp
            • kind: StorageClass name: default
            • kind: StorageClass name: gce-sc-fast
            • kind: StorageClass name: gce-sc-hdd
          • openstack
            • kind: StorageClass name: default
            • kind: StorageClass name: default-class
      • 2003 (Medium) - Pods should use only allowed volume types.
        • Pod uses only allowed volume types.
          • aws
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
          • azure
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: DaemonSet name: cloud-node-manager namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
          • gcp
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
          • openstack
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-kube-controllers namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
      • 2004 (Medium) - Limit the Services of type NodePort.
        • Service is not of type NodePort.
          • aws
            • kind: Service name: kubernetes namespace: default
            • kind: Service name: apiserver-proxy namespace: kube-system
            • kind: Service name: blackbox-exporter namespace: kube-system
            • kind: Service name: calico-felix-monitoring namespace: kube-system
            • kind: Service name: calico-typha namespace: kube-system
            • kind: Service name: calico-typha-monitoring namespace: kube-system
            • kind: Service name: kube-dns namespace: kube-system
            • kind: Service name: kube-dns-upstream namespace: kube-system
            • kind: Service name: kube-proxy namespace: kube-system
            • kind: Service name: metrics-server namespace: kube-system
            • kind: Service name: network-problem-detector-host namespace: kube-system
            • kind: Service name: network-problem-detector-pod namespace: kube-system
            • kind: Service name: node-exporter namespace: kube-system
            • kind: Service name: node-problem-detector namespace: kube-system
          • azure
            • kind: Service name: kubernetes namespace: default
            • kind: Service name: allow-tcp-egress namespace: kube-system
            • kind: Service name: allow-udp-egress namespace: kube-system
            • kind: Service name: apiserver-proxy namespace: kube-system
            • kind: Service name: blackbox-exporter namespace: kube-system
            • kind: Service name: calico-felix-monitoring namespace: kube-system
            • kind: Service name: calico-typha namespace: kube-system
            • kind: Service name: calico-typha-monitoring namespace: kube-system
            • kind: Service name: kube-dns namespace: kube-system
            • kind: Service name: kube-dns-upstream namespace: kube-system
            • kind: Service name: kube-proxy namespace: kube-system
            • kind: Service name: metrics-server namespace: kube-system
            • kind: Service name: network-problem-detector-host namespace: kube-system
            • kind: Service name: network-problem-detector-pod namespace: kube-system
            • kind: Service name: node-exporter namespace: kube-system
            • kind: Service name: node-problem-detector namespace: kube-system
          • gcp
            • kind: Service name: kubernetes namespace: default
            • kind: Service name: apiserver-proxy namespace: kube-system
            • kind: Service name: blackbox-exporter namespace: kube-system
            • kind: Service name: calico-felix-monitoring namespace: kube-system
            • kind: Service name: calico-typha namespace: kube-system
            • kind: Service name: calico-typha-monitoring namespace: kube-system
            • kind: Service name: kube-dns namespace: kube-system
            • kind: Service name: kube-dns-upstream namespace: kube-system
            • kind: Service name: kube-proxy namespace: kube-system
            • kind: Service name: metrics-server namespace: kube-system
            • kind: Service name: network-problem-detector-host namespace: kube-system
            • kind: Service name: network-problem-detector-pod namespace: kube-system
            • kind: Service name: node-exporter namespace: kube-system
            • kind: Service name: node-problem-detector namespace: kube-system
          • openstack
            • kind: Service name: kubernetes namespace: default
            • kind: Service name: apiserver-proxy namespace: kube-system
            • kind: Service name: blackbox-exporter namespace: kube-system
            • kind: Service name: calico-felix-monitoring namespace: kube-system
            • kind: Service name: calico-typha namespace: kube-system
            • kind: Service name: calico-typha-monitoring namespace: kube-system
            • kind: Service name: kube-dns namespace: kube-system
            • kind: Service name: kube-dns-upstream namespace: kube-system
            • kind: Service name: kube-proxy namespace: kube-system
            • kind: Service name: metrics-server namespace: kube-system
            • kind: Service name: network-problem-detector-host namespace: kube-system
            • kind: Service name: network-problem-detector-pod namespace: kube-system
            • kind: Service name: node-exporter namespace: kube-system
            • kind: Service name: node-problem-detector namespace: kube-system
      • 2005 (High) - Container images must come from trusted repositories.
        • Image has allowed prefix.
          • aws
            • container: sidecar imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/apiserver-proxy@sha256:d3b9d9af4f420682fda692211a170a52702efb0ee3a3a12e1532f6ff10e2e764 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: proxy imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/3rd/envoyproxy/envoy@sha256:8b61712b40ba37eff494630e9456f10b4aec1f5063c7da853d53cae995526116 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: setup imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/apiserver-proxy@sha256:d3b9d9af4f420682fda692211a170a52702efb0ee3a3a12e1532f6ff10e2e764 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: blackbox-exporter imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/prometheus/blackbox-exporter@sha256:99ffc310196e7a80da5ab850b1732c96372d6e6afa70598aef2e960ba1d1896d kind: Deployment name: blackbox-exporter namespace: kube-system
            • container: add-snat-rule-to-upstream-dns imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: calico-node imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: cleanup-routes imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: log-mtu-issues imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: install-cni imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/cni@sha256:13177b9dbe14c23a1ace189c5d28a90956eb3b6f21e117f6d20d73f4518728ee kind: DaemonSet name: calico-node namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cpvpa@sha256:8334328504df28ea6eab2399e1706a6a7fabf7391cd47273afd4a2bbe4f51cb5 kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • container: calico-typha imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/typha@sha256:decdbae18859edfb5d735870dd562f48743813e5f08580c712fdf48ec0100618 kind: Deployment name: calico-typha-deploy namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cluster-proportional-autoscaler@sha256:bc5be9858d29652151d43354e606f2c70789d3a3761998bd75df9198ba9728d1 kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cpvpa@sha256:8334328504df28ea6eab2399e1706a6a7fabf7391cd47273afd4a2bbe4f51cb5 kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • container: coredns imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/coredns/coredns@sha256:10ab4c3a59ed6a1ec921ddc099d5f0975c4799afd71c4ebff8152d09e584dc7e kind: Deployment name: coredns namespace: kube-system
            • container: csi-driver imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/provider-aws/aws-ebs-csi-driver@sha256:552c0e18cb286d3e42237c0825347abb3d05ccb28343f469ecac8d083a2f56d7 kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: csi-node-driver-registrar imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/sig-storage/csi-node-driver-registrar@sha256:d7c8579c553ec0bb2efa5fc3b7de66d718730ab23910394af5fced1bf22cc09b kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: csi-liveness-probe imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/sig-storage/livenessprobe@sha256:a028c3faa34704f1a669b3e270105f94e43e6f437dff7c8ebda9f571a8f501e3 kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: egress-filter-applier imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/egress-filter@sha256:cf837155973f09b9a0468d6bea296bd96face2c7ae0e2d011d69697af710b577 kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • container: kube-proxy imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • container: conntrack-fix imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/alpine-conntrack@sha256:78af1e338e7bd65c566e2edf298daae4fba78edbde12aadbe19c7ba504aa726a kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • container: cleanup imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • container: kube-proxy-init imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • container: metrics-server imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/metrics-server/metrics-server@sha256:740060e6e48b2c746e85d0cfb985cf2c2fb302b6334904241f949b7431778e8d kind: Deployment name: metrics-server namespace: kube-system
            • container: network-problem-detector-host imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/network-problem-detector@sha256:a56ae60fc6bdb81cf50e1ab9a8e829a70cbddb7f3579b9494694840821f9456d kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • container: network-problem-detector-pod imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/network-problem-detector@sha256:a56ae60fc6bdb81cf50e1ab9a8e829a70cbddb7f3579b9494694840821f9456d kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • container: node-exporter imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/prometheus/node-exporter@sha256:a0c600b24155368740594538f04abc8e83168b568b91f73eb4e5ca6d685dc3ed kind: DaemonSet name: node-exporter namespace: kube-system
            • container: node-cache imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/dns/k8s-dns-node-cache@sha256:6392e6bf4fe2e15f68bcac2980c11f30d0abfca1eeda1142ee557557299b4792 kind: DaemonSet name: node-local-dns-worker-kkfk1 namespace: kube-system
            • container: node-problem-detector imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/node-problem-detector/node-problem-detector@sha256:2ff8d26b316cc189b9c6a1cfe286923fcdbec573158d640833927576a30d6f35 kind: DaemonSet name: node-problem-detector namespace: kube-system
            • container: vpn-shoot imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/vpn-client@sha256:8cf772a2699ce9e70e8850ffccf1bbc5b1f5f69d522e859348080e38e42bcaf9 kind: Deployment name: vpn-shoot namespace: kube-system
            • container: vpn-shoot-init imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/vpn-client@sha256:8cf772a2699ce9e70e8850ffccf1bbc5b1f5f69d522e859348080e38e42bcaf9 kind: Deployment name: vpn-shoot namespace: kube-system
          • azure
            • container: sidecar imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/apiserver-proxy@sha256:d3b9d9af4f420682fda692211a170a52702efb0ee3a3a12e1532f6ff10e2e764 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: proxy imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/3rd/envoyproxy/envoy@sha256:8b61712b40ba37eff494630e9456f10b4aec1f5063c7da853d53cae995526116 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: setup imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/apiserver-proxy@sha256:d3b9d9af4f420682fda692211a170a52702efb0ee3a3a12e1532f6ff10e2e764 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: blackbox-exporter imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/prometheus/blackbox-exporter@sha256:99ffc310196e7a80da5ab850b1732c96372d6e6afa70598aef2e960ba1d1896d kind: Deployment name: blackbox-exporter namespace: kube-system
            • container: calico-node imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: log-mtu-issues imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: install-cni imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/cni@sha256:13177b9dbe14c23a1ace189c5d28a90956eb3b6f21e117f6d20d73f4518728ee kind: DaemonSet name: calico-node namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cpvpa@sha256:8334328504df28ea6eab2399e1706a6a7fabf7391cd47273afd4a2bbe4f51cb5 kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • container: calico-typha imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/typha@sha256:decdbae18859edfb5d735870dd562f48743813e5f08580c712fdf48ec0100618 kind: Deployment name: calico-typha-deploy namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cluster-proportional-autoscaler@sha256:bc5be9858d29652151d43354e606f2c70789d3a3761998bd75df9198ba9728d1 kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cpvpa@sha256:8334328504df28ea6eab2399e1706a6a7fabf7391cd47273afd4a2bbe4f51cb5 kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • container: cloud-node-manager imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/mcr_microsoft_com/oss/kubernetes/azure-cloud-node-manager@sha256:5965a36def8172860c41e7d912e68239555c65aa08bffc451a9d4c87b8e3d0fe kind: DaemonSet name: cloud-node-manager namespace: kube-system
            • container: coredns imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/coredns/coredns@sha256:10ab4c3a59ed6a1ec921ddc099d5f0975c4799afd71c4ebff8152d09e584dc7e kind: Deployment name: coredns namespace: kube-system
            • container: csi-driver imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/mcr_microsoft_com/oss/v2/kubernetes-csi/azuredisk-csi@sha256:7c8ad90f5b41d90c0a2b4ebf273ac9fdca8b24c006c64d82c70c56d6c96666a0 kind: DaemonSet name: csi-driver-node-disk namespace: kube-system
            • container: csi-node-driver-registrar imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/sig-storage/csi-node-driver-registrar@sha256:d7c8579c553ec0bb2efa5fc3b7de66d718730ab23910394af5fced1bf22cc09b kind: DaemonSet name: csi-driver-node-disk namespace: kube-system
            • container: csi-liveness-probe imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/sig-storage/livenessprobe@sha256:a028c3faa34704f1a669b3e270105f94e43e6f437dff7c8ebda9f571a8f501e3 kind: DaemonSet name: csi-driver-node-disk namespace: kube-system
            • container: csi-driver imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/mcr_microsoft_com/oss/v2/kubernetes-csi/azurefile-csi@sha256:c8b15d2cd44a41991a0ca01f10ff29e1f42df8d353201245938a47496815bbdb kind: DaemonSet name: csi-driver-node-file namespace: kube-system
            • container: csi-node-driver-registrar imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/sig-storage/csi-node-driver-registrar@sha256:d7c8579c553ec0bb2efa5fc3b7de66d718730ab23910394af5fced1bf22cc09b kind: DaemonSet name: csi-driver-node-file namespace: kube-system
            • container: csi-liveness-probe imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/sig-storage/livenessprobe@sha256:a028c3faa34704f1a669b3e270105f94e43e6f437dff7c8ebda9f571a8f501e3 kind: DaemonSet name: csi-driver-node-file namespace: kube-system
            • container: egress-filter-applier imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/egress-filter@sha256:cf837155973f09b9a0468d6bea296bd96face2c7ae0e2d011d69697af710b577 kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • container: kube-proxy imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • container: conntrack-fix imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/alpine-conntrack@sha256:78af1e338e7bd65c566e2edf298daae4fba78edbde12aadbe19c7ba504aa726a kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • container: cleanup imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • container: kube-proxy-init imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • container: metrics-server imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/metrics-server/metrics-server@sha256:740060e6e48b2c746e85d0cfb985cf2c2fb302b6334904241f949b7431778e8d kind: Deployment name: metrics-server namespace: kube-system
            • container: network-problem-detector-host imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/network-problem-detector@sha256:a56ae60fc6bdb81cf50e1ab9a8e829a70cbddb7f3579b9494694840821f9456d kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • container: network-problem-detector-pod imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/network-problem-detector@sha256:a56ae60fc6bdb81cf50e1ab9a8e829a70cbddb7f3579b9494694840821f9456d kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • container: node-exporter imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/prometheus/node-exporter@sha256:a0c600b24155368740594538f04abc8e83168b568b91f73eb4e5ca6d685dc3ed kind: DaemonSet name: node-exporter namespace: kube-system
            • container: node-cache imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/dns/k8s-dns-node-cache@sha256:6392e6bf4fe2e15f68bcac2980c11f30d0abfca1eeda1142ee557557299b4792 kind: DaemonSet name: node-local-dns-worker-g7p4p namespace: kube-system
            • container: node-problem-detector imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/node-problem-detector/node-problem-detector@sha256:2ff8d26b316cc189b9c6a1cfe286923fcdbec573158d640833927576a30d6f35 kind: DaemonSet name: node-problem-detector namespace: kube-system
            • container: vpn-shoot imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/vpn-client@sha256:8cf772a2699ce9e70e8850ffccf1bbc5b1f5f69d522e859348080e38e42bcaf9 kind: Deployment name: vpn-shoot namespace: kube-system
            • container: vpn-shoot-init imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/vpn-client@sha256:8cf772a2699ce9e70e8850ffccf1bbc5b1f5f69d522e859348080e38e42bcaf9 kind: Deployment name: vpn-shoot namespace: kube-system
          • gcp
            • container: sidecar imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/apiserver-proxy@sha256:d3b9d9af4f420682fda692211a170a52702efb0ee3a3a12e1532f6ff10e2e764 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: proxy imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/3rd/envoyproxy/envoy@sha256:8b61712b40ba37eff494630e9456f10b4aec1f5063c7da853d53cae995526116 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: setup imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/apiserver-proxy@sha256:d3b9d9af4f420682fda692211a170a52702efb0ee3a3a12e1532f6ff10e2e764 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: blackbox-exporter imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/prometheus/blackbox-exporter@sha256:99ffc310196e7a80da5ab850b1732c96372d6e6afa70598aef2e960ba1d1896d kind: Deployment name: blackbox-exporter namespace: kube-system
            • container: calico-node imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: cleanup-routes imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: log-mtu-issues imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: install-cni imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/cni@sha256:13177b9dbe14c23a1ace189c5d28a90956eb3b6f21e117f6d20d73f4518728ee kind: DaemonSet name: calico-node namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cpvpa@sha256:8334328504df28ea6eab2399e1706a6a7fabf7391cd47273afd4a2bbe4f51cb5 kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • container: calico-typha imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/typha@sha256:decdbae18859edfb5d735870dd562f48743813e5f08580c712fdf48ec0100618 kind: Deployment name: calico-typha-deploy namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cluster-proportional-autoscaler@sha256:bc5be9858d29652151d43354e606f2c70789d3a3761998bd75df9198ba9728d1 kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cpvpa@sha256:8334328504df28ea6eab2399e1706a6a7fabf7391cd47273afd4a2bbe4f51cb5 kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • container: coredns imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/coredns/coredns@sha256:10ab4c3a59ed6a1ec921ddc099d5f0975c4799afd71c4ebff8152d09e584dc7e kind: Deployment name: coredns namespace: kube-system
            • container: csi-driver imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cloud-provider-gcp/gcp-compute-persistent-disk-csi-driver@sha256:62d6ad132b954dfb59fa2ff5e6b1b9d6fc8261aa9e64c2614aceaa92f06d5a1c kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: csi-node-driver-registrar imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/sig-storage/csi-node-driver-registrar@sha256:d7c8579c553ec0bb2efa5fc3b7de66d718730ab23910394af5fced1bf22cc09b kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: csi-liveness-probe imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/sig-storage/livenessprobe@sha256:a028c3faa34704f1a669b3e270105f94e43e6f437dff7c8ebda9f571a8f501e3 kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: egress-filter-applier imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/egress-filter@sha256:cf837155973f09b9a0468d6bea296bd96face2c7ae0e2d011d69697af710b577 kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • container: kube-proxy imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • container: conntrack-fix imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/alpine-conntrack@sha256:78af1e338e7bd65c566e2edf298daae4fba78edbde12aadbe19c7ba504aa726a kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • container: cleanup imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • container: kube-proxy-init imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • container: metrics-server imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/metrics-server/metrics-server@sha256:740060e6e48b2c746e85d0cfb985cf2c2fb302b6334904241f949b7431778e8d kind: Deployment name: metrics-server namespace: kube-system
            • container: network-problem-detector-host imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/network-problem-detector@sha256:a56ae60fc6bdb81cf50e1ab9a8e829a70cbddb7f3579b9494694840821f9456d kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • container: network-problem-detector-pod imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/network-problem-detector@sha256:a56ae60fc6bdb81cf50e1ab9a8e829a70cbddb7f3579b9494694840821f9456d kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • container: node-exporter imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/prometheus/node-exporter@sha256:a0c600b24155368740594538f04abc8e83168b568b91f73eb4e5ca6d685dc3ed kind: DaemonSet name: node-exporter namespace: kube-system
            • container: node-cache imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/dns/k8s-dns-node-cache@sha256:6392e6bf4fe2e15f68bcac2980c11f30d0abfca1eeda1142ee557557299b4792 kind: DaemonSet name: node-local-dns-worker-bex82 namespace: kube-system
            • container: node-problem-detector imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/node-problem-detector/node-problem-detector@sha256:2ff8d26b316cc189b9c6a1cfe286923fcdbec573158d640833927576a30d6f35 kind: DaemonSet name: node-problem-detector namespace: kube-system
            • container: vpn-shoot imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/vpn-client@sha256:8cf772a2699ce9e70e8850ffccf1bbc5b1f5f69d522e859348080e38e42bcaf9 kind: Deployment name: vpn-shoot namespace: kube-system
            • container: vpn-shoot-init imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/vpn-client@sha256:8cf772a2699ce9e70e8850ffccf1bbc5b1f5f69d522e859348080e38e42bcaf9 kind: Deployment name: vpn-shoot namespace: kube-system
          • openstack
            • container: sidecar imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/apiserver-proxy@sha256:d3b9d9af4f420682fda692211a170a52702efb0ee3a3a12e1532f6ff10e2e764 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: proxy imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/3rd/envoyproxy/envoy@sha256:8b61712b40ba37eff494630e9456f10b4aec1f5063c7da853d53cae995526116 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: setup imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/apiserver-proxy@sha256:d3b9d9af4f420682fda692211a170a52702efb0ee3a3a12e1532f6ff10e2e764 kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • container: blackbox-exporter imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/prometheus/blackbox-exporter@sha256:99ffc310196e7a80da5ab850b1732c96372d6e6afa70598aef2e960ba1d1896d kind: Deployment name: blackbox-exporter namespace: kube-system
            • container: calico-kube-controllers imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/kube-controllers@sha256:390011d41f0a118133d21c0d0604d2765d6117337881e67854c32aa85bd3092b kind: Deployment name: calico-kube-controllers namespace: kube-system
            • container: add-snat-rule-to-upstream-dns imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: network-unavailable-condition-ensurer imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: calico-node imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: cleanup-routes imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: log-mtu-issues imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/node@sha256:f2906f5026364143c932a777b94b7d7db70ec48294e3cf4079a59e0bd2fcf25e kind: DaemonSet name: calico-node namespace: kube-system
            • container: install-cni imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/cni@sha256:13177b9dbe14c23a1ace189c5d28a90956eb3b6f21e117f6d20d73f4518728ee kind: DaemonSet name: calico-node namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cpvpa@sha256:8334328504df28ea6eab2399e1706a6a7fabf7391cd47273afd4a2bbe4f51cb5 kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • container: calico-typha imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/calico/typha@sha256:decdbae18859edfb5d735870dd562f48743813e5f08580c712fdf48ec0100618 kind: Deployment name: calico-typha-deploy namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cluster-proportional-autoscaler@sha256:bc5be9858d29652151d43354e606f2c70789d3a3761998bd75df9198ba9728d1 kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • container: autoscaler imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/cpa/cpvpa@sha256:8334328504df28ea6eab2399e1706a6a7fabf7391cd47273afd4a2bbe4f51cb5 kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • container: coredns imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/coredns/coredns@sha256:10ab4c3a59ed6a1ec921ddc099d5f0975c4799afd71c4ebff8152d09e584dc7e kind: Deployment name: coredns namespace: kube-system
            • container: csi-driver imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/provider-os/cinder-csi-plugin@sha256:8af3632beda1aa09796b5668f71e2809fb2d1c3196bfc96b5db4f953a4dfbcba kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: csi-node-driver-registrar imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/sig-storage/csi-node-driver-registrar@sha256:d7c8579c553ec0bb2efa5fc3b7de66d718730ab23910394af5fced1bf22cc09b kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: csi-liveness-probe imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/sig-storage/livenessprobe@sha256:a028c3faa34704f1a669b3e270105f94e43e6f437dff7c8ebda9f571a8f501e3 kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: egress-filter-applier imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/egress-filter@sha256:cf837155973f09b9a0468d6bea296bd96face2c7ae0e2d011d69697af710b577 kind: DaemonSet name: egress-filter-applier namespace: kube-system
            • container: kube-proxy imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • container: conntrack-fix imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/alpine-conntrack@sha256:78af1e338e7bd65c566e2edf298daae4fba78edbde12aadbe19c7ba504aa726a kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • container: cleanup imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • container: kube-proxy-init imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/kube-proxy@sha256:8f2a8a0546b4a827e5440c2917454743daebd89bdf100b4cb3b38764e652f647 kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • container: metrics-server imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/metrics-server/metrics-server@sha256:740060e6e48b2c746e85d0cfb985cf2c2fb302b6334904241f949b7431778e8d kind: Deployment name: metrics-server namespace: kube-system
            • container: network-problem-detector-host imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/network-problem-detector@sha256:a56ae60fc6bdb81cf50e1ab9a8e829a70cbddb7f3579b9494694840821f9456d kind: DaemonSet name: network-problem-detector-host namespace: kube-system
            • container: network-problem-detector-pod imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/network-problem-detector@sha256:a56ae60fc6bdb81cf50e1ab9a8e829a70cbddb7f3579b9494694840821f9456d kind: DaemonSet name: network-problem-detector-pod namespace: kube-system
            • container: node-exporter imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/quay_io/prometheus/node-exporter@sha256:a0c600b24155368740594538f04abc8e83168b568b91f73eb4e5ca6d685dc3ed kind: DaemonSet name: node-exporter namespace: kube-system
            • container: node-cache imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/dns/k8s-dns-node-cache@sha256:6392e6bf4fe2e15f68bcac2980c11f30d0abfca1eeda1142ee557557299b4792 kind: DaemonSet name: node-local-dns-worker-dqty2 namespace: kube-system
            • container: node-problem-detector imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/registry_k8s_io/node-problem-detector/node-problem-detector@sha256:2ff8d26b316cc189b9c6a1cfe286923fcdbec573158d640833927576a30d6f35 kind: DaemonSet name: node-problem-detector namespace: kube-system
            • container: vpn-shoot imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/vpn-client@sha256:8cf772a2699ce9e70e8850ffccf1bbc5b1f5f69d522e859348080e38e42bcaf9 kind: Deployment name: vpn-shoot namespace: kube-system
            • container: vpn-shoot-init imageRef: europe-docker.pkg.dev/sap-se-gcp-k8s-c-delivery/releases-canary-public/europe-docker_pkg_dev/gardener-project/releases/gardener/vpn-client@sha256:8cf772a2699ce9e70e8850ffccf1bbc5b1f5f69d522e859348080e38e42bcaf9 kind: Deployment name: vpn-shoot namespace: kube-system
      • 2006 (Medium) - Limit the use of wildcards in RBAC resources.
        • Role does not use "*" in policy rule resources.
          • aws
            • kind: Role name: gardener.cloud:target:dependency-watchdog namespace: kube-node-lease
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-public
            • kind: Role name: extension-apiserver-authentication-reader namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-cert-service:cert-controller-manager namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:aws-custom-route-controller namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-attacher namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-provisioner namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-resizer namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-snapshot-controller namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-snapshotter namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-volume-modifier namespace: kube-system
            • kind: Role name: gardener.cloud:target:machine-controller-manager namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-recommender namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-updater namespace: kube-system
            • kind: Role name: system::leader-locking-kube-controller-manager namespace: kube-system
            • kind: Role name: system::leader-locking-kube-scheduler namespace: kube-system
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-system
            • kind: Role name: system:controller:cloud-provider namespace: kube-system
            • kind: Role name: system:controller:token-cleaner namespace: kube-system
            • kind: Role name: typha-cpha namespace: kube-system
            • kind: ClusterRole name: admin
            • kind: ClusterRole name: calico-cni-plugin
            • kind: ClusterRole name: calico-node
            • kind: ClusterRole name: calico-node-cpva
            • kind: ClusterRole name: calico-tier-getter
            • kind: ClusterRole name: edit
            • kind: ClusterRole name: event-logger
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-cert-service:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:aws-custom-route-controller
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-attacher
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-driver
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-provisioner
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-resizer
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-snapshot-controller
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-snapshotter
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-volume-modifier
            • kind: ClusterRole name: gardener-extension-shoot-lakom-service-resource-reader
            • kind: ClusterRole name: gardener.cloud:kube-system:network-problem-detector
            • kind: ClusterRole name: gardener.cloud:logging:valitail
            • kind: ClusterRole name: gardener.cloud:monitoring:kube-state-metrics
            • kind: ClusterRole name: gardener.cloud:monitoring:prometheus-shoot
            • kind: ClusterRole name: gardener.cloud:system:read-only
            • kind: ClusterRole name: gardener.cloud:target:dependency-watchdog
            • kind: ClusterRole name: gardener.cloud:target:machine-controller-manager
            • kind: ClusterRole name: gardener.cloud:vpa:target:actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:admission-controller
            • kind: ClusterRole name: gardener.cloud:vpa:target:checkpoint-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:evictioner
            • kind: ClusterRole name: gardener.cloud:vpa:target:metrics-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:status-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:vpa-updater-in-place
            • kind: ClusterRole name: node-problem-detector
            • kind: ClusterRole name: system:aggregate-to-admin
            • kind: ClusterRole name: system:aggregate-to-edit
            • kind: ClusterRole name: system:aggregate-to-view
            • kind: ClusterRole name: system:apiserver:kubelet
            • kind: ClusterRole name: system:auth-delegator
            • kind: ClusterRole name: system:basic-user
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:nodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:selfnodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-kubelet-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kubelet-serving-approver
            • kind: ClusterRole name: system:certificates.k8s.io:legacy-unknown-approver
            • kind: ClusterRole name: system:controller:attachdetach-controller
            • kind: ClusterRole name: system:controller:certificate-controller
            • kind: ClusterRole name: system:controller:clusterrole-aggregation-controller
            • kind: ClusterRole name: system:controller:cronjob-controller
            • kind: ClusterRole name: system:controller:daemon-set-controller
            • kind: ClusterRole name: system:controller:deployment-controller
            • kind: ClusterRole name: system:controller:endpoint-controller
            • kind: ClusterRole name: system:controller:endpointslice-controller
            • kind: ClusterRole name: system:controller:endpointslicemirroring-controller
            • kind: ClusterRole name: system:controller:ephemeral-volume-controller
            • kind: ClusterRole name: system:controller:expand-controller
            • kind: ClusterRole name: system:controller:job-controller
            • kind: ClusterRole name: system:controller:legacy-service-account-token-cleaner
            • kind: ClusterRole name: system:controller:node-controller
            • kind: ClusterRole name: system:controller:persistent-volume-binder
            • kind: ClusterRole name: system:controller:pod-garbage-collector
            • kind: ClusterRole name: system:controller:pv-protection-controller
            • kind: ClusterRole name: system:controller:pvc-protection-controller
            • kind: ClusterRole name: system:controller:replicaset-controller
            • kind: ClusterRole name: system:controller:replication-controller
            • kind: ClusterRole name: system:controller:root-ca-cert-publisher
            • kind: ClusterRole name: system:controller:route-controller
            • kind: ClusterRole name: system:controller:selinux-warning-controller
            • kind: ClusterRole name: system:controller:service-account-controller
            • kind: ClusterRole name: system:controller:service-cidrs-controller
            • kind: ClusterRole name: system:controller:service-controller
            • kind: ClusterRole name: system:controller:statefulset-controller
            • kind: ClusterRole name: system:controller:ttl-after-finished-controller
            • kind: ClusterRole name: system:controller:ttl-controller
            • kind: ClusterRole name: system:controller:validatingadmissionpolicy-status-controller
            • kind: ClusterRole name: system:coredns
            • kind: ClusterRole name: system:discovery
            • kind: ClusterRole name: system:heapster
            • kind: ClusterRole name: system:kube-aggregator
            • kind: ClusterRole name: system:kube-dns
            • kind: ClusterRole name: system:kube-scheduler
            • kind: ClusterRole name: system:kubelet-api-admin
            • kind: ClusterRole name: system:metrics-server
            • kind: ClusterRole name: system:monitoring
            • kind: ClusterRole name: system:node
            • kind: ClusterRole name: system:node-bootstrapper
            • kind: ClusterRole name: system:node-problem-detector
            • kind: ClusterRole name: system:node-proxier
            • kind: ClusterRole name: system:persistent-volume-provisioner
            • kind: ClusterRole name: system:public-info-viewer
            • kind: ClusterRole name: system:service-account-issuer-discovery
            • kind: ClusterRole name: system:volume-scheduler
            • kind: ClusterRole name: typha-cpha
            • kind: ClusterRole name: typha-cpva
            • kind: ClusterRole name: view
          • azure
            • kind: Role name: gardener.cloud:target:dependency-watchdog namespace: kube-node-lease
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-public
            • kind: Role name: extension-apiserver-authentication-reader namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-cert-service:cert-controller-manager namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-azure:csi-attacher namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-azure:csi-provisioner namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-azure:csi-resizer namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-azure:csi-snapshot-controller namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-azure:csi-snapshotter namespace: kube-system
            • kind: Role name: gardener.cloud:target:machine-controller-manager namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-recommender namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-updater namespace: kube-system
            • kind: Role name: system::leader-locking-kube-controller-manager namespace: kube-system
            • kind: Role name: system::leader-locking-kube-scheduler namespace: kube-system
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-system
            • kind: Role name: system:controller:cloud-provider namespace: kube-system
            • kind: Role name: system:controller:token-cleaner namespace: kube-system
            • kind: Role name: typha-cpha namespace: kube-system
            • kind: ClusterRole name: admin
            • kind: ClusterRole name: calico-cni-plugin
            • kind: ClusterRole name: calico-node
            • kind: ClusterRole name: calico-node-cpva
            • kind: ClusterRole name: calico-tier-getter
            • kind: ClusterRole name: cloud-node-manager
            • kind: ClusterRole name: edit
            • kind: ClusterRole name: event-logger
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-cert-service:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-attacher
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-driver
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-driver-controller-disk
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-driver-controller-file
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-provisioner
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-resizer
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-snapshot-controller
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-snapshot-validation
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-snapshotter
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:remedy-controller-azure
            • kind: ClusterRole name: gardener-extension-shoot-lakom-service-resource-reader
            • kind: ClusterRole name: gardener.cloud:kube-system:network-problem-detector
            • kind: ClusterRole name: gardener.cloud:logging:valitail
            • kind: ClusterRole name: gardener.cloud:monitoring:kube-state-metrics
            • kind: ClusterRole name: gardener.cloud:monitoring:prometheus-shoot
            • kind: ClusterRole name: gardener.cloud:system:read-only
            • kind: ClusterRole name: gardener.cloud:target:dependency-watchdog
            • kind: ClusterRole name: gardener.cloud:target:machine-controller-manager
            • kind: ClusterRole name: gardener.cloud:vpa:target:actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:admission-controller
            • kind: ClusterRole name: gardener.cloud:vpa:target:checkpoint-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:evictioner
            • kind: ClusterRole name: gardener.cloud:vpa:target:metrics-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:status-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:vpa-updater-in-place
            • kind: ClusterRole name: node-problem-detector
            • kind: ClusterRole name: system:aggregate-to-admin
            • kind: ClusterRole name: system:aggregate-to-edit
            • kind: ClusterRole name: system:aggregate-to-view
            • kind: ClusterRole name: system:apiserver:kubelet
            • kind: ClusterRole name: system:auth-delegator
            • kind: ClusterRole name: system:azure-cloud-provider
            • kind: ClusterRole name: system:basic-user
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:nodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:selfnodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-kubelet-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kubelet-serving-approver
            • kind: ClusterRole name: system:certificates.k8s.io:legacy-unknown-approver
            • kind: ClusterRole name: system:cloud-controller-manager
            • kind: ClusterRole name: system:controller:attachdetach-controller
            • kind: ClusterRole name: system:controller:certificate-controller
            • kind: ClusterRole name: system:controller:clusterrole-aggregation-controller
            • kind: ClusterRole name: system:controller:cronjob-controller
            • kind: ClusterRole name: system:controller:daemon-set-controller
            • kind: ClusterRole name: system:controller:deployment-controller
            • kind: ClusterRole name: system:controller:endpoint-controller
            • kind: ClusterRole name: system:controller:endpointslice-controller
            • kind: ClusterRole name: system:controller:endpointslicemirroring-controller
            • kind: ClusterRole name: system:controller:ephemeral-volume-controller
            • kind: ClusterRole name: system:controller:expand-controller
            • kind: ClusterRole name: system:controller:job-controller
            • kind: ClusterRole name: system:controller:legacy-service-account-token-cleaner
            • kind: ClusterRole name: system:controller:node-controller
            • kind: ClusterRole name: system:controller:persistent-volume-binder
            • kind: ClusterRole name: system:controller:pod-garbage-collector
            • kind: ClusterRole name: system:controller:pv-protection-controller
            • kind: ClusterRole name: system:controller:pvc-protection-controller
            • kind: ClusterRole name: system:controller:replicaset-controller
            • kind: ClusterRole name: system:controller:replication-controller
            • kind: ClusterRole name: system:controller:root-ca-cert-publisher
            • kind: ClusterRole name: system:controller:route-controller
            • kind: ClusterRole name: system:controller:selinux-warning-controller
            • kind: ClusterRole name: system:controller:service-account-controller
            • kind: ClusterRole name: system:controller:service-cidrs-controller
            • kind: ClusterRole name: system:controller:service-controller
            • kind: ClusterRole name: system:controller:statefulset-controller
            • kind: ClusterRole name: system:controller:ttl-after-finished-controller
            • kind: ClusterRole name: system:controller:ttl-controller
            • kind: ClusterRole name: system:controller:validatingadmissionpolicy-status-controller
            • kind: ClusterRole name: system:coredns
            • kind: ClusterRole name: system:discovery
            • kind: ClusterRole name: system:heapster
            • kind: ClusterRole name: system:kube-aggregator
            • kind: ClusterRole name: system:kube-dns
            • kind: ClusterRole name: system:kube-scheduler
            • kind: ClusterRole name: system:kubelet-api-admin
            • kind: ClusterRole name: system:metrics-server
            • kind: ClusterRole name: system:monitoring
            • kind: ClusterRole name: system:node
            • kind: ClusterRole name: system:node-bootstrapper
            • kind: ClusterRole name: system:node-problem-detector
            • kind: ClusterRole name: system:node-proxier
            • kind: ClusterRole name: system:persistent-volume-provisioner
            • kind: ClusterRole name: system:public-info-viewer
            • kind: ClusterRole name: system:service-account-issuer-discovery
            • kind: ClusterRole name: system:volume-scheduler
            • kind: ClusterRole name: typha-cpha
            • kind: ClusterRole name: typha-cpva
            • kind: ClusterRole name: view
          • gcp
            • kind: Role name: gardener.cloud:target:dependency-watchdog namespace: kube-node-lease
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-public
            • kind: Role name: extension-apiserver-authentication-reader namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-cert-service:cert-controller-manager namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-gcp:csi-attacher namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-gcp:csi-provisioner namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-gcp:csi-resizer namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-gcp:csi-snapshot-controller namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-gcp:csi-snapshotter namespace: kube-system
            • kind: Role name: gardener.cloud:target:machine-controller-manager namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-recommender namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-updater namespace: kube-system
            • kind: Role name: system::leader-locking-kube-controller-manager namespace: kube-system
            • kind: Role name: system::leader-locking-kube-scheduler namespace: kube-system
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-system
            • kind: Role name: system:controller:cloud-provider namespace: kube-system
            • kind: Role name: system:controller:token-cleaner namespace: kube-system
            • kind: Role name: typha-cpha namespace: kube-system
            • kind: ClusterRole name: admin
            • kind: ClusterRole name: calico-cni-plugin
            • kind: ClusterRole name: calico-node
            • kind: ClusterRole name: calico-node-cpva
            • kind: ClusterRole name: calico-tier-getter
            • kind: ClusterRole name: edit
            • kind: ClusterRole name: event-logger
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-cert-service:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-attacher
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-driver
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-provisioner
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-resizer
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-snapshot-controller
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-snapshotter
            • kind: ClusterRole name: gardener-extension-shoot-lakom-service-resource-reader
            • kind: ClusterRole name: gardener.cloud:kube-system:network-problem-detector
            • kind: ClusterRole name: gardener.cloud:logging:valitail
            • kind: ClusterRole name: gardener.cloud:monitoring:kube-state-metrics
            • kind: ClusterRole name: gardener.cloud:monitoring:prometheus-shoot
            • kind: ClusterRole name: gardener.cloud:system:read-only
            • kind: ClusterRole name: gardener.cloud:target:dependency-watchdog
            • kind: ClusterRole name: gardener.cloud:target:machine-controller-manager
            • kind: ClusterRole name: gardener.cloud:vpa:target:actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:admission-controller
            • kind: ClusterRole name: gardener.cloud:vpa:target:checkpoint-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:evictioner
            • kind: ClusterRole name: gardener.cloud:vpa:target:metrics-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:status-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:vpa-updater-in-place
            • kind: ClusterRole name: gce:cloud-provider
            • kind: ClusterRole name: node-problem-detector
            • kind: ClusterRole name: system:aggregate-to-admin
            • kind: ClusterRole name: system:aggregate-to-edit
            • kind: ClusterRole name: system:aggregate-to-view
            • kind: ClusterRole name: system:apiserver:kubelet
            • kind: ClusterRole name: system:auth-delegator
            • kind: ClusterRole name: system:basic-user
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:nodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:selfnodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-kubelet-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kubelet-serving-approver
            • kind: ClusterRole name: system:certificates.k8s.io:legacy-unknown-approver
            • kind: ClusterRole name: system:controller:attachdetach-controller
            • kind: ClusterRole name: system:controller:certificate-controller
            • kind: ClusterRole name: system:controller:cloud-node-controller
            • kind: ClusterRole name: system:controller:clusterrole-aggregation-controller
            • kind: ClusterRole name: system:controller:cronjob-controller
            • kind: ClusterRole name: system:controller:daemon-set-controller
            • kind: ClusterRole name: system:controller:deployment-controller
            • kind: ClusterRole name: system:controller:endpoint-controller
            • kind: ClusterRole name: system:controller:endpointslice-controller
            • kind: ClusterRole name: system:controller:endpointslicemirroring-controller
            • kind: ClusterRole name: system:controller:ephemeral-volume-controller
            • kind: ClusterRole name: system:controller:expand-controller
            • kind: ClusterRole name: system:controller:job-controller
            • kind: ClusterRole name: system:controller:legacy-service-account-token-cleaner
            • kind: ClusterRole name: system:controller:node-controller
            • kind: ClusterRole name: system:controller:persistent-volume-binder
            • kind: ClusterRole name: system:controller:pod-garbage-collector
            • kind: ClusterRole name: system:controller:pv-protection-controller
            • kind: ClusterRole name: system:controller:pvc-protection-controller
            • kind: ClusterRole name: system:controller:replicaset-controller
            • kind: ClusterRole name: system:controller:replication-controller
            • kind: ClusterRole name: system:controller:root-ca-cert-publisher
            • kind: ClusterRole name: system:controller:route-controller
            • kind: ClusterRole name: system:controller:selinux-warning-controller
            • kind: ClusterRole name: system:controller:service-account-controller
            • kind: ClusterRole name: system:controller:service-cidrs-controller
            • kind: ClusterRole name: system:controller:service-controller
            • kind: ClusterRole name: system:controller:statefulset-controller
            • kind: ClusterRole name: system:controller:ttl-after-finished-controller
            • kind: ClusterRole name: system:controller:ttl-controller
            • kind: ClusterRole name: system:controller:validatingadmissionpolicy-status-controller
            • kind: ClusterRole name: system:coredns
            • kind: ClusterRole name: system:discovery
            • kind: ClusterRole name: system:heapster
            • kind: ClusterRole name: system:kube-aggregator
            • kind: ClusterRole name: system:kube-dns
            • kind: ClusterRole name: system:kube-scheduler
            • kind: ClusterRole name: system:kubelet-api-admin
            • kind: ClusterRole name: system:metrics-server
            • kind: ClusterRole name: system:monitoring
            • kind: ClusterRole name: system:node
            • kind: ClusterRole name: system:node-bootstrapper
            • kind: ClusterRole name: system:node-problem-detector
            • kind: ClusterRole name: system:node-proxier
            • kind: ClusterRole name: system:persistent-volume-provisioner
            • kind: ClusterRole name: system:public-info-viewer
            • kind: ClusterRole name: system:service-account-issuer-discovery
            • kind: ClusterRole name: system:volume-scheduler
            • kind: ClusterRole name: typha-cpha
            • kind: ClusterRole name: typha-cpva
            • kind: ClusterRole name: view
          • openstack
            • kind: Role name: gardener.cloud:target:dependency-watchdog namespace: kube-node-lease
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-public
            • kind: Role name: extension-apiserver-authentication-reader namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-cert-service:cert-controller-manager namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-openstack:csi-attacher namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-openstack:csi-provisioner namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-openstack:csi-resizer namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-openstack:csi-snapshot-controller namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-openstack:csi-snapshotter namespace: kube-system
            • kind: Role name: gardener.cloud:target:machine-controller-manager namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-recommender namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-updater namespace: kube-system
            • kind: Role name: system::leader-locking-kube-controller-manager namespace: kube-system
            • kind: Role name: system::leader-locking-kube-scheduler namespace: kube-system
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-system
            • kind: Role name: system:controller:cloud-provider namespace: kube-system
            • kind: Role name: system:controller:token-cleaner namespace: kube-system
            • kind: Role name: typha-cpha namespace: kube-system
            • kind: ClusterRole name: admin
            • kind: ClusterRole name: calico-cni-plugin
            • kind: ClusterRole name: calico-kube-controllers
            • kind: ClusterRole name: calico-node
            • kind: ClusterRole name: calico-node-cpva
            • kind: ClusterRole name: calico-tier-getter
            • kind: ClusterRole name: edit
            • kind: ClusterRole name: event-logger
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-cert-service:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-attacher
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-driver
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-provisioner
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-resizer
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-snapshot-controller
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-snapshotter
            • kind: ClusterRole name: gardener-extension-shoot-lakom-service-resource-reader
            • kind: ClusterRole name: gardener.cloud:kube-system:network-problem-detector
            • kind: ClusterRole name: gardener.cloud:logging:valitail
            • kind: ClusterRole name: gardener.cloud:monitoring:kube-state-metrics
            • kind: ClusterRole name: gardener.cloud:monitoring:prometheus-shoot
            • kind: ClusterRole name: gardener.cloud:system:read-only
            • kind: ClusterRole name: gardener.cloud:target:dependency-watchdog
            • kind: ClusterRole name: gardener.cloud:target:machine-controller-manager
            • kind: ClusterRole name: gardener.cloud:vpa:target:actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:admission-controller
            • kind: ClusterRole name: gardener.cloud:vpa:target:checkpoint-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:evictioner
            • kind: ClusterRole name: gardener.cloud:vpa:target:metrics-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:status-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:vpa-updater-in-place
            • kind: ClusterRole name: node-problem-detector
            • kind: ClusterRole name: system:aggregate-to-admin
            • kind: ClusterRole name: system:aggregate-to-edit
            • kind: ClusterRole name: system:aggregate-to-view
            • kind: ClusterRole name: system:apiserver:kubelet
            • kind: ClusterRole name: system:auth-delegator
            • kind: ClusterRole name: system:basic-user
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:nodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:selfnodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-kubelet-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kubelet-serving-approver
            • kind: ClusterRole name: system:certificates.k8s.io:legacy-unknown-approver
            • kind: ClusterRole name: system:controller:attachdetach-controller
            • kind: ClusterRole name: system:controller:certificate-controller
            • kind: ClusterRole name: system:controller:cloud-node-controller
            • kind: ClusterRole name: system:controller:clusterrole-aggregation-controller
            • kind: ClusterRole name: system:controller:cronjob-controller
            • kind: ClusterRole name: system:controller:daemon-set-controller
            • kind: ClusterRole name: system:controller:deployment-controller
            • kind: ClusterRole name: system:controller:endpoint-controller
            • kind: ClusterRole name: system:controller:endpointslice-controller
            • kind: ClusterRole name: system:controller:endpointslicemirroring-controller
            • kind: ClusterRole name: system:controller:ephemeral-volume-controller
            • kind: ClusterRole name: system:controller:expand-controller
            • kind: ClusterRole name: system:controller:job-controller
            • kind: ClusterRole name: system:controller:legacy-service-account-token-cleaner
            • kind: ClusterRole name: system:controller:node-controller
            • kind: ClusterRole name: system:controller:persistent-volume-binder
            • kind: ClusterRole name: system:controller:pod-garbage-collector
            • kind: ClusterRole name: system:controller:pv-protection-controller
            • kind: ClusterRole name: system:controller:pvc-protection-controller
            • kind: ClusterRole name: system:controller:replicaset-controller
            • kind: ClusterRole name: system:controller:replication-controller
            • kind: ClusterRole name: system:controller:root-ca-cert-publisher
            • kind: ClusterRole name: system:controller:route-controller
            • kind: ClusterRole name: system:controller:selinux-warning-controller
            • kind: ClusterRole name: system:controller:service-account-controller
            • kind: ClusterRole name: system:controller:service-cidrs-controller
            • kind: ClusterRole name: system:controller:service-controller
            • kind: ClusterRole name: system:controller:statefulset-controller
            • kind: ClusterRole name: system:controller:ttl-after-finished-controller
            • kind: ClusterRole name: system:controller:ttl-controller
            • kind: ClusterRole name: system:controller:validatingadmissionpolicy-status-controller
            • kind: ClusterRole name: system:coredns
            • kind: ClusterRole name: system:discovery
            • kind: ClusterRole name: system:heapster
            • kind: ClusterRole name: system:kube-aggregator
            • kind: ClusterRole name: system:kube-dns
            • kind: ClusterRole name: system:kube-scheduler
            • kind: ClusterRole name: system:kubelet-api-admin
            • kind: ClusterRole name: system:metrics-server
            • kind: ClusterRole name: system:monitoring
            • kind: ClusterRole name: system:node
            • kind: ClusterRole name: system:node-bootstrapper
            • kind: ClusterRole name: system:node-problem-detector
            • kind: ClusterRole name: system:node-proxier
            • kind: ClusterRole name: system:persistent-volume-provisioner
            • kind: ClusterRole name: system:public-info-viewer
            • kind: ClusterRole name: system:service-account-issuer-discovery
            • kind: ClusterRole name: system:volume-scheduler
            • kind: ClusterRole name: typha-cpha
            • kind: ClusterRole name: typha-cpva
            • kind: ClusterRole name: view
      • 2007 (Medium) - Limit the use of wildcards in RBAC verbs.
        • Role does not use "*" in policy rule verbs.
          • aws
            • kind: Role name: gardener.cloud:target:dependency-watchdog namespace: kube-node-lease
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-public
            • kind: Role name: extension-apiserver-authentication-reader namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-cert-service:cert-controller-manager namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:aws-custom-route-controller namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-attacher namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-provisioner namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-resizer namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-snapshot-controller namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-snapshotter namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-aws:csi-volume-modifier namespace: kube-system
            • kind: Role name: gardener.cloud:target:machine-controller-manager namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-recommender namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-updater namespace: kube-system
            • kind: Role name: system::leader-locking-kube-controller-manager namespace: kube-system
            • kind: Role name: system::leader-locking-kube-scheduler namespace: kube-system
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-system
            • kind: Role name: system:controller:cloud-provider namespace: kube-system
            • kind: Role name: system:controller:token-cleaner namespace: kube-system
            • kind: Role name: typha-cpha namespace: kube-system
            • kind: ClusterRole name: admin
            • kind: ClusterRole name: calico-cni-plugin
            • kind: ClusterRole name: calico-node
            • kind: ClusterRole name: calico-node-cpva
            • kind: ClusterRole name: calico-tier-getter
            • kind: ClusterRole name: edit
            • kind: ClusterRole name: event-logger
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-cert-service:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:aws-custom-route-controller
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-attacher
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-driver
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-provisioner
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-resizer
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-snapshot-controller
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-snapshotter
            • kind: ClusterRole name: extensions.gardener.cloud:provider-aws:csi-volume-modifier
            • kind: ClusterRole name: gardener-extension-shoot-lakom-service-resource-reader
            • kind: ClusterRole name: gardener.cloud:kube-system:network-problem-detector
            • kind: ClusterRole name: gardener.cloud:logging:valitail
            • kind: ClusterRole name: gardener.cloud:monitoring:kube-state-metrics
            • kind: ClusterRole name: gardener.cloud:monitoring:prometheus-shoot
            • kind: ClusterRole name: gardener.cloud:system:read-only
            • kind: ClusterRole name: gardener.cloud:target:dependency-watchdog
            • kind: ClusterRole name: gardener.cloud:target:machine-controller-manager
            • kind: ClusterRole name: gardener.cloud:vpa:target:actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:admission-controller
            • kind: ClusterRole name: gardener.cloud:vpa:target:checkpoint-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:evictioner
            • kind: ClusterRole name: gardener.cloud:vpa:target:metrics-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:status-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:target-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:vpa-updater-in-place
            • kind: ClusterRole name: node-problem-detector
            • kind: ClusterRole name: system:aggregate-to-admin
            • kind: ClusterRole name: system:aggregate-to-edit
            • kind: ClusterRole name: system:aggregate-to-view
            • kind: ClusterRole name: system:apiserver:kubelet
            • kind: ClusterRole name: system:auth-delegator
            • kind: ClusterRole name: system:basic-user
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:nodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:selfnodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-kubelet-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kubelet-serving-approver
            • kind: ClusterRole name: system:certificates.k8s.io:legacy-unknown-approver
            • kind: ClusterRole name: system:controller:attachdetach-controller
            • kind: ClusterRole name: system:controller:certificate-controller
            • kind: ClusterRole name: system:controller:clusterrole-aggregation-controller
            • kind: ClusterRole name: system:controller:cronjob-controller
            • kind: ClusterRole name: system:controller:daemon-set-controller
            • kind: ClusterRole name: system:controller:deployment-controller
            • kind: ClusterRole name: system:controller:disruption-controller
            • kind: ClusterRole name: system:controller:endpoint-controller
            • kind: ClusterRole name: system:controller:endpointslice-controller
            • kind: ClusterRole name: system:controller:endpointslicemirroring-controller
            • kind: ClusterRole name: system:controller:ephemeral-volume-controller
            • kind: ClusterRole name: system:controller:expand-controller
            • kind: ClusterRole name: system:controller:generic-garbage-collector
            • kind: ClusterRole name: system:controller:horizontal-pod-autoscaler
            • kind: ClusterRole name: system:controller:job-controller
            • kind: ClusterRole name: system:controller:legacy-service-account-token-cleaner
            • kind: ClusterRole name: system:controller:namespace-controller
            • kind: ClusterRole name: system:controller:node-controller
            • kind: ClusterRole name: system:controller:persistent-volume-binder
            • kind: ClusterRole name: system:controller:pod-garbage-collector
            • kind: ClusterRole name: system:controller:pv-protection-controller
            • kind: ClusterRole name: system:controller:pvc-protection-controller
            • kind: ClusterRole name: system:controller:replicaset-controller
            • kind: ClusterRole name: system:controller:replication-controller
            • kind: ClusterRole name: system:controller:resourcequota-controller
            • kind: ClusterRole name: system:controller:root-ca-cert-publisher
            • kind: ClusterRole name: system:controller:route-controller
            • kind: ClusterRole name: system:controller:selinux-warning-controller
            • kind: ClusterRole name: system:controller:service-account-controller
            • kind: ClusterRole name: system:controller:service-cidrs-controller
            • kind: ClusterRole name: system:controller:service-controller
            • kind: ClusterRole name: system:controller:statefulset-controller
            • kind: ClusterRole name: system:controller:ttl-after-finished-controller
            • kind: ClusterRole name: system:controller:ttl-controller
            • kind: ClusterRole name: system:controller:validatingadmissionpolicy-status-controller
            • kind: ClusterRole name: system:coredns
            • kind: ClusterRole name: system:discovery
            • kind: ClusterRole name: system:heapster
            • kind: ClusterRole name: system:kube-aggregator
            • kind: ClusterRole name: system:kube-controller-manager
            • kind: ClusterRole name: system:kube-dns
            • kind: ClusterRole name: system:kube-scheduler
            • kind: ClusterRole name: system:metrics-server
            • kind: ClusterRole name: system:monitoring
            • kind: ClusterRole name: system:node
            • kind: ClusterRole name: system:node-bootstrapper
            • kind: ClusterRole name: system:node-problem-detector
            • kind: ClusterRole name: system:node-proxier
            • kind: ClusterRole name: system:persistent-volume-provisioner
            • kind: ClusterRole name: system:public-info-viewer
            • kind: ClusterRole name: system:service-account-issuer-discovery
            • kind: ClusterRole name: system:volume-scheduler
            • kind: ClusterRole name: typha-cpha
            • kind: ClusterRole name: typha-cpva
            • kind: ClusterRole name: view
          • azure
            • kind: Role name: gardener.cloud:target:dependency-watchdog namespace: kube-node-lease
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-public
            • kind: Role name: extension-apiserver-authentication-reader namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-cert-service:cert-controller-manager namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-azure:csi-attacher namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-azure:csi-provisioner namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-azure:csi-resizer namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-azure:csi-snapshot-controller namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-azure:csi-snapshotter namespace: kube-system
            • kind: Role name: gardener.cloud:target:machine-controller-manager namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-recommender namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-updater namespace: kube-system
            • kind: Role name: system::leader-locking-kube-controller-manager namespace: kube-system
            • kind: Role name: system::leader-locking-kube-scheduler namespace: kube-system
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-system
            • kind: Role name: system:controller:cloud-provider namespace: kube-system
            • kind: Role name: system:controller:token-cleaner namespace: kube-system
            • kind: Role name: typha-cpha namespace: kube-system
            • kind: ClusterRole name: admin
            • kind: ClusterRole name: calico-cni-plugin
            • kind: ClusterRole name: calico-node
            • kind: ClusterRole name: calico-node-cpva
            • kind: ClusterRole name: calico-tier-getter
            • kind: ClusterRole name: cloud-node-manager
            • kind: ClusterRole name: edit
            • kind: ClusterRole name: event-logger
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-cert-service:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-attacher
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-driver
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-driver-controller-disk
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-driver-controller-file
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-provisioner
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-resizer
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-snapshot-controller
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-snapshot-validation
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:csi-snapshotter
            • kind: ClusterRole name: extensions.gardener.cloud:provider-azure:remedy-controller-azure
            • kind: ClusterRole name: gardener-extension-shoot-lakom-service-resource-reader
            • kind: ClusterRole name: gardener.cloud:kube-system:network-problem-detector
            • kind: ClusterRole name: gardener.cloud:logging:valitail
            • kind: ClusterRole name: gardener.cloud:monitoring:kube-state-metrics
            • kind: ClusterRole name: gardener.cloud:monitoring:prometheus-shoot
            • kind: ClusterRole name: gardener.cloud:system:read-only
            • kind: ClusterRole name: gardener.cloud:target:dependency-watchdog
            • kind: ClusterRole name: gardener.cloud:target:machine-controller-manager
            • kind: ClusterRole name: gardener.cloud:vpa:target:actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:admission-controller
            • kind: ClusterRole name: gardener.cloud:vpa:target:checkpoint-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:evictioner
            • kind: ClusterRole name: gardener.cloud:vpa:target:metrics-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:status-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:target-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:vpa-updater-in-place
            • kind: ClusterRole name: node-problem-detector
            • kind: ClusterRole name: system:aggregate-to-admin
            • kind: ClusterRole name: system:aggregate-to-edit
            • kind: ClusterRole name: system:aggregate-to-view
            • kind: ClusterRole name: system:apiserver:kubelet
            • kind: ClusterRole name: system:auth-delegator
            • kind: ClusterRole name: system:azure-cloud-provider
            • kind: ClusterRole name: system:basic-user
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:nodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:selfnodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-kubelet-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kubelet-serving-approver
            • kind: ClusterRole name: system:certificates.k8s.io:legacy-unknown-approver
            • kind: ClusterRole name: system:cloud-controller-manager
            • kind: ClusterRole name: system:controller:attachdetach-controller
            • kind: ClusterRole name: system:controller:certificate-controller
            • kind: ClusterRole name: system:controller:clusterrole-aggregation-controller
            • kind: ClusterRole name: system:controller:cronjob-controller
            • kind: ClusterRole name: system:controller:daemon-set-controller
            • kind: ClusterRole name: system:controller:deployment-controller
            • kind: ClusterRole name: system:controller:disruption-controller
            • kind: ClusterRole name: system:controller:endpoint-controller
            • kind: ClusterRole name: system:controller:endpointslice-controller
            • kind: ClusterRole name: system:controller:endpointslicemirroring-controller
            • kind: ClusterRole name: system:controller:ephemeral-volume-controller
            • kind: ClusterRole name: system:controller:expand-controller
            • kind: ClusterRole name: system:controller:generic-garbage-collector
            • kind: ClusterRole name: system:controller:horizontal-pod-autoscaler
            • kind: ClusterRole name: system:controller:job-controller
            • kind: ClusterRole name: system:controller:legacy-service-account-token-cleaner
            • kind: ClusterRole name: system:controller:namespace-controller
            • kind: ClusterRole name: system:controller:node-controller
            • kind: ClusterRole name: system:controller:persistent-volume-binder
            • kind: ClusterRole name: system:controller:pod-garbage-collector
            • kind: ClusterRole name: system:controller:pv-protection-controller
            • kind: ClusterRole name: system:controller:pvc-protection-controller
            • kind: ClusterRole name: system:controller:replicaset-controller
            • kind: ClusterRole name: system:controller:replication-controller
            • kind: ClusterRole name: system:controller:resourcequota-controller
            • kind: ClusterRole name: system:controller:root-ca-cert-publisher
            • kind: ClusterRole name: system:controller:route-controller
            • kind: ClusterRole name: system:controller:selinux-warning-controller
            • kind: ClusterRole name: system:controller:service-account-controller
            • kind: ClusterRole name: system:controller:service-cidrs-controller
            • kind: ClusterRole name: system:controller:service-controller
            • kind: ClusterRole name: system:controller:statefulset-controller
            • kind: ClusterRole name: system:controller:ttl-after-finished-controller
            • kind: ClusterRole name: system:controller:ttl-controller
            • kind: ClusterRole name: system:controller:validatingadmissionpolicy-status-controller
            • kind: ClusterRole name: system:coredns
            • kind: ClusterRole name: system:discovery
            • kind: ClusterRole name: system:heapster
            • kind: ClusterRole name: system:kube-aggregator
            • kind: ClusterRole name: system:kube-controller-manager
            • kind: ClusterRole name: system:kube-dns
            • kind: ClusterRole name: system:kube-scheduler
            • kind: ClusterRole name: system:metrics-server
            • kind: ClusterRole name: system:monitoring
            • kind: ClusterRole name: system:node
            • kind: ClusterRole name: system:node-bootstrapper
            • kind: ClusterRole name: system:node-problem-detector
            • kind: ClusterRole name: system:node-proxier
            • kind: ClusterRole name: system:persistent-volume-provisioner
            • kind: ClusterRole name: system:public-info-viewer
            • kind: ClusterRole name: system:service-account-issuer-discovery
            • kind: ClusterRole name: system:volume-scheduler
            • kind: ClusterRole name: typha-cpha
            • kind: ClusterRole name: typha-cpva
            • kind: ClusterRole name: view
          • gcp
            • kind: Role name: gardener.cloud:target:dependency-watchdog namespace: kube-node-lease
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-public
            • kind: Role name: extension-apiserver-authentication-reader namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-cert-service:cert-controller-manager namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-gcp:csi-attacher namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-gcp:csi-provisioner namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-gcp:csi-resizer namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-gcp:csi-snapshot-controller namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-gcp:csi-snapshotter namespace: kube-system
            • kind: Role name: gardener.cloud:target:machine-controller-manager namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-recommender namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-updater namespace: kube-system
            • kind: Role name: system::leader-locking-kube-controller-manager namespace: kube-system
            • kind: Role name: system::leader-locking-kube-scheduler namespace: kube-system
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-system
            • kind: Role name: system:controller:cloud-provider namespace: kube-system
            • kind: Role name: system:controller:token-cleaner namespace: kube-system
            • kind: Role name: typha-cpha namespace: kube-system
            • kind: ClusterRole name: admin
            • kind: ClusterRole name: calico-cni-plugin
            • kind: ClusterRole name: calico-node
            • kind: ClusterRole name: calico-node-cpva
            • kind: ClusterRole name: calico-tier-getter
            • kind: ClusterRole name: edit
            • kind: ClusterRole name: event-logger
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-cert-service:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-attacher
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-driver
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-provisioner
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-resizer
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-snapshot-controller
            • kind: ClusterRole name: extensions.gardener.cloud:provider-gcp:csi-snapshotter
            • kind: ClusterRole name: gardener-extension-shoot-lakom-service-resource-reader
            • kind: ClusterRole name: gardener.cloud:kube-system:network-problem-detector
            • kind: ClusterRole name: gardener.cloud:logging:valitail
            • kind: ClusterRole name: gardener.cloud:monitoring:kube-state-metrics
            • kind: ClusterRole name: gardener.cloud:monitoring:prometheus-shoot
            • kind: ClusterRole name: gardener.cloud:system:read-only
            • kind: ClusterRole name: gardener.cloud:target:dependency-watchdog
            • kind: ClusterRole name: gardener.cloud:target:machine-controller-manager
            • kind: ClusterRole name: gardener.cloud:vpa:target:actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:admission-controller
            • kind: ClusterRole name: gardener.cloud:vpa:target:checkpoint-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:evictioner
            • kind: ClusterRole name: gardener.cloud:vpa:target:metrics-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:status-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:target-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:vpa-updater-in-place
            • kind: ClusterRole name: gce:cloud-provider
            • kind: ClusterRole name: node-problem-detector
            • kind: ClusterRole name: system:aggregate-to-admin
            • kind: ClusterRole name: system:aggregate-to-edit
            • kind: ClusterRole name: system:aggregate-to-view
            • kind: ClusterRole name: system:apiserver:kubelet
            • kind: ClusterRole name: system:auth-delegator
            • kind: ClusterRole name: system:basic-user
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:nodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:selfnodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-kubelet-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kubelet-serving-approver
            • kind: ClusterRole name: system:certificates.k8s.io:legacy-unknown-approver
            • kind: ClusterRole name: system:controller:attachdetach-controller
            • kind: ClusterRole name: system:controller:certificate-controller
            • kind: ClusterRole name: system:controller:cloud-node-controller
            • kind: ClusterRole name: system:controller:clusterrole-aggregation-controller
            • kind: ClusterRole name: system:controller:cronjob-controller
            • kind: ClusterRole name: system:controller:daemon-set-controller
            • kind: ClusterRole name: system:controller:deployment-controller
            • kind: ClusterRole name: system:controller:disruption-controller
            • kind: ClusterRole name: system:controller:endpoint-controller
            • kind: ClusterRole name: system:controller:endpointslice-controller
            • kind: ClusterRole name: system:controller:endpointslicemirroring-controller
            • kind: ClusterRole name: system:controller:ephemeral-volume-controller
            • kind: ClusterRole name: system:controller:expand-controller
            • kind: ClusterRole name: system:controller:generic-garbage-collector
            • kind: ClusterRole name: system:controller:horizontal-pod-autoscaler
            • kind: ClusterRole name: system:controller:job-controller
            • kind: ClusterRole name: system:controller:legacy-service-account-token-cleaner
            • kind: ClusterRole name: system:controller:namespace-controller
            • kind: ClusterRole name: system:controller:node-controller
            • kind: ClusterRole name: system:controller:persistent-volume-binder
            • kind: ClusterRole name: system:controller:pod-garbage-collector
            • kind: ClusterRole name: system:controller:pv-protection-controller
            • kind: ClusterRole name: system:controller:pvc-protection-controller
            • kind: ClusterRole name: system:controller:replicaset-controller
            • kind: ClusterRole name: system:controller:replication-controller
            • kind: ClusterRole name: system:controller:resourcequota-controller
            • kind: ClusterRole name: system:controller:root-ca-cert-publisher
            • kind: ClusterRole name: system:controller:route-controller
            • kind: ClusterRole name: system:controller:selinux-warning-controller
            • kind: ClusterRole name: system:controller:service-account-controller
            • kind: ClusterRole name: system:controller:service-cidrs-controller
            • kind: ClusterRole name: system:controller:service-controller
            • kind: ClusterRole name: system:controller:statefulset-controller
            • kind: ClusterRole name: system:controller:ttl-after-finished-controller
            • kind: ClusterRole name: system:controller:ttl-controller
            • kind: ClusterRole name: system:controller:validatingadmissionpolicy-status-controller
            • kind: ClusterRole name: system:coredns
            • kind: ClusterRole name: system:discovery
            • kind: ClusterRole name: system:heapster
            • kind: ClusterRole name: system:kube-aggregator
            • kind: ClusterRole name: system:kube-controller-manager
            • kind: ClusterRole name: system:kube-dns
            • kind: ClusterRole name: system:kube-scheduler
            • kind: ClusterRole name: system:metrics-server
            • kind: ClusterRole name: system:monitoring
            • kind: ClusterRole name: system:node
            • kind: ClusterRole name: system:node-bootstrapper
            • kind: ClusterRole name: system:node-problem-detector
            • kind: ClusterRole name: system:node-proxier
            • kind: ClusterRole name: system:persistent-volume-provisioner
            • kind: ClusterRole name: system:public-info-viewer
            • kind: ClusterRole name: system:service-account-issuer-discovery
            • kind: ClusterRole name: system:volume-scheduler
            • kind: ClusterRole name: typha-cpha
            • kind: ClusterRole name: typha-cpva
            • kind: ClusterRole name: view
          • openstack
            • kind: Role name: gardener.cloud:target:dependency-watchdog namespace: kube-node-lease
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-public
            • kind: Role name: extension-apiserver-authentication-reader namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-cert-service:cert-controller-manager namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-openstack:csi-attacher namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-openstack:csi-provisioner namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-openstack:csi-resizer namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-openstack:csi-snapshot-controller namespace: kube-system
            • kind: Role name: extensions.gardener.cloud:provider-openstack:csi-snapshotter namespace: kube-system
            • kind: Role name: gardener.cloud:target:machine-controller-manager namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-recommender namespace: kube-system
            • kind: Role name: gardener.cloud:vpa:target:leader-locking-vpa-updater namespace: kube-system
            • kind: Role name: system::leader-locking-kube-controller-manager namespace: kube-system
            • kind: Role name: system::leader-locking-kube-scheduler namespace: kube-system
            • kind: Role name: system:controller:bootstrap-signer namespace: kube-system
            • kind: Role name: system:controller:cloud-provider namespace: kube-system
            • kind: Role name: system:controller:token-cleaner namespace: kube-system
            • kind: Role name: typha-cpha namespace: kube-system
            • kind: ClusterRole name: admin
            • kind: ClusterRole name: calico-cni-plugin
            • kind: ClusterRole name: calico-kube-controllers
            • kind: ClusterRole name: calico-node
            • kind: ClusterRole name: calico-node-cpva
            • kind: ClusterRole name: calico-tier-getter
            • kind: ClusterRole name: edit
            • kind: ClusterRole name: event-logger
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-cert-service:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-dns-service:shoot-dns-service
            • kind: ClusterRole name: extensions.gardener.cloud:extension-shoot-networking-problem-detector:shoot
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-attacher
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-driver
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-provisioner
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-resizer
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-snapshot-controller
            • kind: ClusterRole name: extensions.gardener.cloud:provider-openstack:csi-snapshotter
            • kind: ClusterRole name: gardener-extension-shoot-lakom-service-resource-reader
            • kind: ClusterRole name: gardener.cloud:kube-system:network-problem-detector
            • kind: ClusterRole name: gardener.cloud:logging:valitail
            • kind: ClusterRole name: gardener.cloud:monitoring:kube-state-metrics
            • kind: ClusterRole name: gardener.cloud:monitoring:prometheus-shoot
            • kind: ClusterRole name: gardener.cloud:system:read-only
            • kind: ClusterRole name: gardener.cloud:target:dependency-watchdog
            • kind: ClusterRole name: gardener.cloud:target:machine-controller-manager
            • kind: ClusterRole name: gardener.cloud:vpa:target:actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:admission-controller
            • kind: ClusterRole name: gardener.cloud:vpa:target:checkpoint-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:evictioner
            • kind: ClusterRole name: gardener.cloud:vpa:target:metrics-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:status-actor
            • kind: ClusterRole name: gardener.cloud:vpa:target:target-reader
            • kind: ClusterRole name: gardener.cloud:vpa:target:vpa-updater-in-place
            • kind: ClusterRole name: node-problem-detector
            • kind: ClusterRole name: system:aggregate-to-admin
            • kind: ClusterRole name: system:aggregate-to-edit
            • kind: ClusterRole name: system:aggregate-to-view
            • kind: ClusterRole name: system:apiserver:kubelet
            • kind: ClusterRole name: system:auth-delegator
            • kind: ClusterRole name: system:basic-user
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:nodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:certificatesigningrequests:selfnodeclient
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kube-apiserver-client-kubelet-approver
            • kind: ClusterRole name: system:certificates.k8s.io:kubelet-serving-approver
            • kind: ClusterRole name: system:certificates.k8s.io:legacy-unknown-approver
            • kind: ClusterRole name: system:controller:attachdetach-controller
            • kind: ClusterRole name: system:controller:certificate-controller
            • kind: ClusterRole name: system:controller:cloud-node-controller
            • kind: ClusterRole name: system:controller:clusterrole-aggregation-controller
            • kind: ClusterRole name: system:controller:cronjob-controller
            • kind: ClusterRole name: system:controller:daemon-set-controller
            • kind: ClusterRole name: system:controller:deployment-controller
            • kind: ClusterRole name: system:controller:disruption-controller
            • kind: ClusterRole name: system:controller:endpoint-controller
            • kind: ClusterRole name: system:controller:endpointslice-controller
            • kind: ClusterRole name: system:controller:endpointslicemirroring-controller
            • kind: ClusterRole name: system:controller:ephemeral-volume-controller
            • kind: ClusterRole name: system:controller:expand-controller
            • kind: ClusterRole name: system:controller:generic-garbage-collector
            • kind: ClusterRole name: system:controller:horizontal-pod-autoscaler
            • kind: ClusterRole name: system:controller:job-controller
            • kind: ClusterRole name: system:controller:legacy-service-account-token-cleaner
            • kind: ClusterRole name: system:controller:namespace-controller
            • kind: ClusterRole name: system:controller:node-controller
            • kind: ClusterRole name: system:controller:persistent-volume-binder
            • kind: ClusterRole name: system:controller:pod-garbage-collector
            • kind: ClusterRole name: system:controller:pv-protection-controller
            • kind: ClusterRole name: system:controller:pvc-protection-controller
            • kind: ClusterRole name: system:controller:replicaset-controller
            • kind: ClusterRole name: system:controller:replication-controller
            • kind: ClusterRole name: system:controller:resourcequota-controller
            • kind: ClusterRole name: system:controller:root-ca-cert-publisher
            • kind: ClusterRole name: system:controller:route-controller
            • kind: ClusterRole name: system:controller:selinux-warning-controller
            • kind: ClusterRole name: system:controller:service-account-controller
            • kind: ClusterRole name: system:controller:service-cidrs-controller
            • kind: ClusterRole name: system:controller:service-controller
            • kind: ClusterRole name: system:controller:statefulset-controller
            • kind: ClusterRole name: system:controller:ttl-after-finished-controller
            • kind: ClusterRole name: system:controller:ttl-controller
            • kind: ClusterRole name: system:controller:validatingadmissionpolicy-status-controller
            • kind: ClusterRole name: system:coredns
            • kind: ClusterRole name: system:discovery
            • kind: ClusterRole name: system:heapster
            • kind: ClusterRole name: system:kube-aggregator
            • kind: ClusterRole name: system:kube-controller-manager
            • kind: ClusterRole name: system:kube-dns
            • kind: ClusterRole name: system:kube-scheduler
            • kind: ClusterRole name: system:metrics-server
            • kind: ClusterRole name: system:monitoring
            • kind: ClusterRole name: system:node
            • kind: ClusterRole name: system:node-bootstrapper
            • kind: ClusterRole name: system:node-problem-detector
            • kind: ClusterRole name: system:node-proxier
            • kind: ClusterRole name: system:persistent-volume-provisioner
            • kind: ClusterRole name: system:public-info-viewer
            • kind: ClusterRole name: system:service-account-issuer-discovery
            • kind: ClusterRole name: system:volume-scheduler
            • kind: ClusterRole name: typha-cpha
            • kind: ClusterRole name: typha-cpva
            • kind: ClusterRole name: view
      • 2008 (High) - Pods must not mount host directories.
        • Pod does not use volumes of type hostPath.
          • aws
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
          • azure
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: DaemonSet name: cloud-node-manager namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
          • gcp
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
          • openstack
            • kind: DaemonSet name: apiserver-proxy namespace: kube-system
            • kind: Deployment name: blackbox-exporter namespace: kube-system
            • kind: Deployment name: calico-kube-controllers namespace: kube-system
            • kind: Deployment name: calico-node-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-deploy namespace: kube-system
            • kind: Deployment name: calico-typha-horizontal-autoscaler namespace: kube-system
            • kind: Deployment name: calico-typha-vertical-autoscaler namespace: kube-system
            • kind: Deployment name: coredns namespace: kube-system
            • kind: Deployment name: metrics-server namespace: kube-system
    • 🔵 Accepted
      • 2001 (High) - Containers must be forbidden to escalate privileges.
        • Gardener managed resources are accepted to allow privilege escalation.
          • aws
            • container: add-snat-rule-to-upstream-dns kind: DaemonSet name: calico-node namespace: kube-system
            • container: calico-node kind: DaemonSet name: calico-node namespace: kube-system
            • container: cleanup-routes kind: DaemonSet name: calico-node namespace: kube-system
            • container: log-mtu-issues kind: DaemonSet name: calico-node namespace: kube-system
            • container: install-cni kind: DaemonSet name: calico-node namespace: kube-system
            • container: csi-driver kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: cleanup kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • container: kube-proxy-init kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system
            • container: node-problem-detector kind: DaemonSet name: node-problem-detector namespace: kube-system
            • container: vpn-shoot-init kind: Deployment name: vpn-shoot namespace: kube-system
          • azure
            • container: calico-node kind: DaemonSet name: calico-node namespace: kube-system
            • container: log-mtu-issues kind: DaemonSet name: calico-node namespace: kube-system
            • container: install-cni kind: DaemonSet name: calico-node namespace: kube-system
            • container: csi-driver kind: DaemonSet name: csi-driver-node-disk namespace: kube-system
            • container: csi-driver kind: DaemonSet name: csi-driver-node-file namespace: kube-system
            • container: cleanup kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • container: kube-proxy-init kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system
            • container: node-problem-detector kind: DaemonSet name: node-problem-detector namespace: kube-system
            • container: vpn-shoot-init kind: Deployment name: vpn-shoot namespace: kube-system
          • gcp
            • container: calico-node kind: DaemonSet name: calico-node namespace: kube-system
            • container: cleanup-routes kind: DaemonSet name: calico-node namespace: kube-system
            • container: log-mtu-issues kind: DaemonSet name: calico-node namespace: kube-system
            • container: install-cni kind: DaemonSet name: calico-node namespace: kube-system
            • container: csi-driver kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: cleanup kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • container: kube-proxy-init kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system
            • container: node-problem-detector kind: DaemonSet name: node-problem-detector namespace: kube-system
            • container: vpn-shoot-init kind: Deployment name: vpn-shoot namespace: kube-system
          • openstack
            • container: add-snat-rule-to-upstream-dns kind: DaemonSet name: calico-node namespace: kube-system
            • container: calico-node kind: DaemonSet name: calico-node namespace: kube-system
            • container: cleanup-routes kind: DaemonSet name: calico-node namespace: kube-system
            • container: log-mtu-issues kind: DaemonSet name: calico-node namespace: kube-system
            • container: install-cni kind: DaemonSet name: calico-node namespace: kube-system
            • container: csi-driver kind: DaemonSet name: csi-driver-node namespace: kube-system
            • container: cleanup kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • container: kube-proxy-init kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system
            • container: node-problem-detector kind: DaemonSet name: node-problem-detector namespace: kube-system
            • container: vpn-shoot-init kind: Deployment name: vpn-shoot namespace: kube-system
      • 2003 (Medium) - Pods should use only allowed volume types.
        • Gardener managed resources are accepted to use a wider range of volume types.
          • aws
            • kind: DaemonSet name: calico-node namespace: kube-system volume: lib-modules
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-run-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-lib-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-bin-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-net-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-log-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: policysync
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: kubelet-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: plugin-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: registration-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: device-dir
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system volume: ssl-certs-hosts
            • kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system volume: kernel-modules
            • kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system volume: kube-proxy-dir
            • kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system volume: kube-proxy-mode
            • kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: log
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: log
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: host
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: textfile
            • kind: DaemonSet name: node-local-dns-worker-kkfk1 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: log
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: localtime
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: kmsg
            • kind: Deployment name: vpn-shoot namespace: kube-system volume: dev-net-tun
          • azure
            • kind: DaemonSet name: calico-node namespace: kube-system volume: lib-modules
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-run-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-lib-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-bin-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-net-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-log-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: policysync
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: kubelet-dir
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: plugin-dir
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: registration-dir
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: device-dir
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: sys-devices-dir
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: scsi-host-dir
            • kind: DaemonSet name: csi-driver-node-file namespace: kube-system volume: kubelet-dir
            • kind: DaemonSet name: csi-driver-node-file namespace: kube-system volume: plugin-dir
            • kind: DaemonSet name: csi-driver-node-file namespace: kube-system volume: registration-dir
            • kind: DaemonSet name: csi-driver-node-file namespace: kube-system volume: device-dir
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system volume: ssl-certs-hosts
            • kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system volume: kernel-modules
            • kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system volume: kube-proxy-dir
            • kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system volume: kube-proxy-mode
            • kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: log
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: log
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: host
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: textfile
            • kind: DaemonSet name: node-local-dns-worker-g7p4p namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: log
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: localtime
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: kmsg
            • kind: Deployment name: vpn-shoot namespace: kube-system volume: dev-net-tun
          • gcp
            • kind: DaemonSet name: calico-node namespace: kube-system volume: lib-modules
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-run-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-lib-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-bin-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-net-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-log-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: policysync
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: kubelet-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: plugin-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: registration-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: device-dir
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system volume: ssl-certs-hosts
            • kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system volume: kernel-modules
            • kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system volume: kube-proxy-dir
            • kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system volume: kube-proxy-mode
            • kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: log
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: log
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: host
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: textfile
            • kind: DaemonSet name: node-local-dns-worker-bex82 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: log
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: localtime
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: kmsg
            • kind: Deployment name: vpn-shoot namespace: kube-system volume: dev-net-tun
          • openstack
            • kind: DaemonSet name: calico-node namespace: kube-system volume: lib-modules
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-run-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-lib-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-bin-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-net-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-log-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: policysync
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: kubelet-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: plugin-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: registration-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: device-dir
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system volume: ssl-certs-hosts
            • kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system volume: kernel-modules
            • kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system volume: kube-proxy-dir
            • kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system volume: kube-proxy-mode
            • kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: log
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: log
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: host
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: textfile
            • kind: DaemonSet name: node-local-dns-worker-dqty2 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: log
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: localtime
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: kmsg
            • kind: Deployment name: vpn-shoot namespace: kube-system volume: dev-net-tun
      • 2006 (Medium) - Limit the use of wildcards in RBAC resources.
        • Default RBAC Roles.
          • aws
            • kind: ClusterRole name: cluster-admin
            • kind: ClusterRole name: system:controller:disruption-controller
            • kind: ClusterRole name: system:controller:generic-garbage-collector
            • kind: ClusterRole name: system:controller:horizontal-pod-autoscaler
            • kind: ClusterRole name: system:controller:namespace-controller
            • kind: ClusterRole name: system:controller:resourcequota-controller
            • kind: ClusterRole name: system:kube-controller-manager
          • azure
            • kind: ClusterRole name: cluster-admin
            • kind: ClusterRole name: system:controller:disruption-controller
            • kind: ClusterRole name: system:controller:generic-garbage-collector
            • kind: ClusterRole name: system:controller:horizontal-pod-autoscaler
            • kind: ClusterRole name: system:controller:namespace-controller
            • kind: ClusterRole name: system:controller:resourcequota-controller
            • kind: ClusterRole name: system:kube-controller-manager
          • gcp
            • kind: ClusterRole name: cluster-admin
            • kind: ClusterRole name: system:controller:disruption-controller
            • kind: ClusterRole name: system:controller:generic-garbage-collector
            • kind: ClusterRole name: system:controller:horizontal-pod-autoscaler
            • kind: ClusterRole name: system:controller:namespace-controller
            • kind: ClusterRole name: system:controller:resourcequota-controller
            • kind: ClusterRole name: system:kube-controller-manager
          • openstack
            • kind: ClusterRole name: cluster-admin
            • kind: ClusterRole name: system:controller:disruption-controller
            • kind: ClusterRole name: system:controller:generic-garbage-collector
            • kind: ClusterRole name: system:controller:horizontal-pod-autoscaler
            • kind: ClusterRole name: system:controller:namespace-controller
            • kind: ClusterRole name: system:controller:resourcequota-controller
            • kind: ClusterRole name: system:kube-controller-manager
        • VPA RBAC Roles require */scale permissions to vertically scale resources.
          • aws
            • kind: ClusterRole name: gardener.cloud:vpa:target:target-reader
          • azure
            • kind: ClusterRole name: gardener.cloud:vpa:target:target-reader
          • gcp
            • kind: ClusterRole name: gardener.cloud:vpa:target:target-reader
          • openstack
            • kind: ClusterRole name: gardener.cloud:vpa:target:target-reader
      • 2007 (Medium) - Limit the use of wildcards in RBAC verbs.
        • Default RBAC Roles.
          • aws
            • kind: ClusterRole name: cluster-admin
            • kind: ClusterRole name: system:kubelet-api-admin
          • azure
            • kind: ClusterRole name: cluster-admin
            • kind: ClusterRole name: system:kubelet-api-admin
          • gcp
            • kind: ClusterRole name: cluster-admin
            • kind: ClusterRole name: system:kubelet-api-admin
          • openstack
            • kind: ClusterRole name: cluster-admin
            • kind: ClusterRole name: system:kubelet-api-admin
      • 2008 (High) - Pods must not mount host directories.
        • Gardener managed resources are accepted to use hostPath volumes.
          • aws
            • kind: DaemonSet name: calico-node namespace: kube-system volume: lib-modules
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-run-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-lib-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-bin-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-net-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-log-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: policysync
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: kubelet-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: plugin-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: registration-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: device-dir
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system volume: ssl-certs-hosts
            • kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system volume: kernel-modules
            • kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system volume: kube-proxy-dir
            • kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system volume: kube-proxy-mode
            • kind: DaemonSet name: kube-proxy-worker-kkfk1-v1.33.5 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: log
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: log
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: host
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: textfile
            • kind: DaemonSet name: node-local-dns-worker-kkfk1 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: log
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: localtime
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: kmsg
            • kind: Deployment name: vpn-shoot namespace: kube-system volume: dev-net-tun
          • azure
            • kind: DaemonSet name: calico-node namespace: kube-system volume: lib-modules
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-run-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-lib-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-bin-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-net-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-log-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: policysync
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: kubelet-dir
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: plugin-dir
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: registration-dir
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: device-dir
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: sys-devices-dir
            • kind: DaemonSet name: csi-driver-node-disk namespace: kube-system volume: scsi-host-dir
            • kind: DaemonSet name: csi-driver-node-file namespace: kube-system volume: kubelet-dir
            • kind: DaemonSet name: csi-driver-node-file namespace: kube-system volume: plugin-dir
            • kind: DaemonSet name: csi-driver-node-file namespace: kube-system volume: registration-dir
            • kind: DaemonSet name: csi-driver-node-file namespace: kube-system volume: device-dir
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system volume: ssl-certs-hosts
            • kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system volume: kernel-modules
            • kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system volume: kube-proxy-dir
            • kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system volume: kube-proxy-mode
            • kind: DaemonSet name: kube-proxy-worker-g7p4p-v1.33.5 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: log
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: log
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: host
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: textfile
            • kind: DaemonSet name: node-local-dns-worker-g7p4p namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: log
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: localtime
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: kmsg
            • kind: Deployment name: vpn-shoot namespace: kube-system volume: dev-net-tun
          • gcp
            • kind: DaemonSet name: calico-node namespace: kube-system volume: lib-modules
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-run-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-lib-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-bin-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-net-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-log-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: policysync
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: kubelet-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: plugin-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: registration-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: device-dir
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system volume: ssl-certs-hosts
            • kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system volume: kernel-modules
            • kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system volume: kube-proxy-dir
            • kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system volume: kube-proxy-mode
            • kind: DaemonSet name: kube-proxy-worker-bex82-v1.33.5 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: log
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: log
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: host
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: textfile
            • kind: DaemonSet name: node-local-dns-worker-bex82 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: log
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: localtime
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: kmsg
            • kind: Deployment name: vpn-shoot namespace: kube-system volume: dev-net-tun
          • openstack
            • kind: DaemonSet name: calico-node namespace: kube-system volume: lib-modules
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-run-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: var-lib-calico
            • kind: DaemonSet name: calico-node namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-bin-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-net-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: cni-log-dir
            • kind: DaemonSet name: calico-node namespace: kube-system volume: policysync
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: kubelet-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: plugin-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: registration-dir
            • kind: DaemonSet name: csi-driver-node namespace: kube-system volume: device-dir
            • kind: DaemonSet name: egress-filter-applier namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system volume: ssl-certs-hosts
            • kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system volume: kernel-modules
            • kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system volume: kube-proxy-dir
            • kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system volume: kube-proxy-mode
            • kind: DaemonSet name: kube-proxy-worker-dqty2-v1.33.5 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-host namespace: kube-system volume: log
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: output
            • kind: DaemonSet name: network-problem-detector-pod namespace: kube-system volume: log
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: host
            • kind: DaemonSet name: node-exporter namespace: kube-system volume: textfile
            • kind: DaemonSet name: node-local-dns-worker-dqty2 namespace: kube-system volume: xtables-lock
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: log
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: localtime
            • kind: DaemonSet name: node-problem-detector namespace: kube-system volume: kmsg
            • kind: Deployment name: vpn-shoot namespace: kube-system volume: dev-net-tun