id: kubernetes-fake-certificate info: name: Kubernetes Fake Ingress Certificate - Detect author: kchason severity: low description: | Kubernetes Fake Ingress Certificate is a feature in Kubernetes that allows users to create and use fake or self-signed SSL/TLS certificates for testing purposes without having to obtain a real SSL/TLS certificate from a trusted Certificate Authority (CA). remediation: Purchase or generate a proper SSL certificate for this service. reference: - https://snyk.io/blog/setting-up-ssl-tls-for-kubernetes-ingress/ metadata: verified: true max-request: 1 shodan-query: ssl:"Kubernetes Ingress Controller Fake Certificate" tags: ssl,kubernetes,tls,self-signed ssl: - address: "{{Host}}:{{Port}}" matchers: - type: dsl dsl: - 'subject_cn == "Kubernetes Ingress Controller Fake Certificate"' - 'issuer_cn == "Kubernetes Ingress Controller Fake Certificate"' condition: or extractors: - type: dsl dsl: - '"Issuer: " + issuer_cn' # digest: 490a0046304402203477f360d88cc34471d5fbaf562810738fc16ea9801faca7dda66ad572c80062022058a29195d0d414a471079c22f7610557e03ea8df0cf9cfa67772945d0458db27:922c64590222798bb761d5b6d8e72950