LOW
Source
Trivy
ID
AVD-GCP-0058

Kubernetes should have ‘Automatic upgrade’ enabled

Automatic updates keep nodes updated with the latest cluster master version.

Impact

Follow the appropriate remediation steps below to resolve the issue.

Enable automatic upgrades

 1
 2
 3
 4
 5
 6
 7
 8
 9
10
11
12
13
resource "google_container_cluster" "primary" {
  name                     = "my-gke-cluster"
  location                 = "us-central1"
  remove_default_node_pool = true
}

resource "google_container_node_pool" "good_example" {
  name    = "my-node-pool"
  cluster = google_container_cluster.primary.id
  management {
    auto_upgrade = true
  }
}