# EKS DaemonSets on AWS | ZopNight

> Every check ZopNight runs on your EKS DaemonSets on AWS: 11 in total, across reliability and security.

Source: https://zop.dev/zopnight/rules/aws/eks-daemonset

---

_AWS · 11 checks_

## EKS DaemonSets on AWS, checked for you.

ZopNight runs 11 checks on your EKS DaemonSets in AWS, covering reliability and security. Workloads are scheduled by namespace.

- 11 — checks
- 2 — categories
- Manual — fixes, spelled out
- Yes — scheduled with its namespace

Free to start. No card. The playground just needs your work email.

## Every check, grouped by what it protects.

Each one opens with why it matters and exactly what to change.

### Reliability

Production-shape issues that cause incidents and rework: single replicas, missing requests and limits, missing probes.

- [Container Image Tag Latest or Missing](https://zop.dev/zopnight/rules/container-image-tag-latest-or-missing)
- [DaemonSet Not Fully Scheduled](https://zop.dev/zopnight/rules/daemonset-not-fully-scheduled)
- [Liveness and Readiness Share One Handler](https://zop.dev/zopnight/rules/liveness-and-readiness-share-one-handler)
- [Missing CPU/Memory Limits](https://zop.dev/zopnight/rules/missing-cpu-memory-limits)
- [Missing CPU/Memory Requests](https://zop.dev/zopnight/rules/missing-cpu-memory-requests)
- [Missing Liveness Probe](https://zop.dev/zopnight/rules/missing-liveness-probe)
- [Missing Readiness Probe](https://zop.dev/zopnight/rules/missing-readiness-probe)
- [Missing Startup Probe](https://zop.dev/zopnight/rules/missing-startup-probe)

### Security

Risky configurations: privileged containers, containers running as root, host networking, ingress without TLS.

- [Container Running as Root](https://zop.dev/zopnight/rules/container-running-as-root)
- [Container with Host Network](https://zop.dev/zopnight/rules/container-with-host-network)
- [Privileged Container](https://zop.dev/zopnight/rules/privileged-container)

## Find these on your own EKS DaemonSets.

Connect a read-only role and ZopNight inventories the EKS DaemonSets you run, then runs all 11 checks against them.

[object Object]
