Analysis/Audit rule listing bindings for non-existant accounts
fuero opened this issue · 0 comments
fuero commented
What would you like to be added:
I'd like `rbac-tool analyze' warn about (Cluster)Rolebindings for accounts that don't or no longer exist in the cluster.
Why is this needed:
Unnecessary permissions are a security risk and should be audited.