Amazon EKS service IP addresses
Hi, where can we find the IPs of the Amazon EKS service? I want to correctly identify a CloudTrail event with the name GetCallerIdentity that is made by the EKS. EKS docs specifies the existence of such event, but on AWS IP ranges there is no EKS service. Insted the IP is in AMAZON and EC2 CIDR like any other EC2 ip.
The EKS cluster control plane IP addresses will vary depending on the configuration of the VPC and Subnets where the EKS cluster is configured. The cluster will configure one ENI in each selected subnet, consuming one IP address from the subnet's configured CIDR block. You can view these ENIs from the AWS Management Console, in the EC2 Dashboard, under the Network interfaces section. Keep in mind, that these IP addresses may change due to the cluster upgrades.
I'm aware that the EKS cluster control plane IP addresses will vary. I need a list with the CIDRs used by the EKS control plane, to differentiate in Cloud Trail if an event is from AWS or a bad actor. For: Amazon EKS uses the authentication token to make the sts:GetCallerIdentity call. As a result, AWS CloudTrail events with the name GetCallerIdentity from the source sts.amazonaws.com can have Amazon EKS service IP addresses for their source IP address. I need the Amazon EKS service IP addresses list.
Programatically retrieve recommended AMI id for GPU EKS nodesasked a year ago
EKS NodeGroup IAM Role on Config File (yaml)Accepted Answerasked 21 days ago
Implications of automatic EKS Platform version updateasked 2 months ago
Adding Nodes in EKS getting >>nodecreationfailure eks - Nodes instances failed to join the kubernetes clusterAccepted Answerasked 4 months ago
EKS Anywhere Supportasked 16 days ago
Unable to create EKS Clusterasked a month ago
Amazon EKS service IP addressesasked 3 months ago
EKS Node Group with RIAccepted AnswerEXPERTasked 2 years ago
EKS Fargate: restrict access to service to only certain podsasked 2 months ago
What is the difference between iam-aws-authenticator and aws eks get-token?asked 2 years ago