ALL USE CASES > IMPERSONATE
StrongDM Policy Playbook:
Require MFA for Escalating Privilege in Kubernetes
This policy requires an MFA prompt to escalate privileges within Kubernetes for more sensitive actions.
Video Demo
Why It Matters?
Privilege escalation attacks allow adversaries to move from low-level access to high-impact capabilities within a system. By requiring additional friction like MFA before granting elevated privileges, you limit the blast radius of compromised credentials.
What Exactly Does This Policy Do?
This policy helps prevent attackers from gaining administrative permissions on your Kubernetes clusters. The policy can be further enhanced by adding other contextual attributes and additional friction, such as Approval Workflows.

Want to learn more?
See StrongDM in action. 👀
See StrongDM in action. 👀