Microsoft Defender for Cloud
Cloud and workloads

Review and remediate Kubernetes node vulnerabilities

In brief

The documentation adds separate steps for reviewing and remediating findings and names the relevant AKS, EKS, and GKE recommendations. EKS and GKE recommendations are marked Preview.

What Defender admins need to know

Administrators can more easily locate the correct recommendation for their Kubernetes environment; no action is required.

Summaries are generated from the documentation change itself.

Documentation change

The comparison below shows only the changed extract. Use the full-page view for complete context.

Review vulnerability findings for Kubernetes nodes

To review vulnerability findings for Kubernetes nodes, follow these steps:

  1. Sign in to the Azure portal.

  2. Go to Microsoft Defender for Cloud > Recommendations.

Remediate Kubernetes node vulnerabilities

To remediate vulnerabilities found on your Kubernetes nodes, follow these steps:

  1. Sign in to the Azure portal.

  2. Go to Microsoft Defender for Cloud > Recommendations.

  3. Search for and select the relevant recommendation for your environment (see recommendation names above).environment:

    • AKS: AKS nodes should have vulnerability findings resolved
    • EKS: EKS nodes should have vulnerability findings resolved (Preview)
    • GKE: GKE nodes should have vulnerability findings resolved (Preview)
  4. Select Fix.

    :::image type="content" source="media/kubernetes-nodes-va/node-pool-overview.png" alt-text="Screenshot showing the overview details of the Kubernetes node pool for updating its image." lightbox="media/kubernetes-nodes-va/node-pool-overview.png":::

Next stepsteps

[!div class="nextstepaction"] Use Cloud Security Explorer to investigate vulnerabilities in a cluster node