---
title: "Compliance and security"
description: "Generate compliance reports and encrypt in-cluster traffic for clusters connected to Calico Cloud, with archived flow logs, audit logs, CIS benchmarks, and WireGuard."
product: "Calico Cloud"
version: "v23.0.1"
section: "Compliance and security"
canonical_url: "https://docs.tigera.io/calico-cloud/compliance/"
---

# Compliance and security

Get reports on Kubernetes workloads and environments for regulatory compliance. Encrypt traffic in your cluster with WireGuard.

##### [Enable compliance reports](https://docs.tigera.io/calico-cloud/compliance/enable-compliance.md)

[Activate compliance reporting components on clusters connected to Calico Cloud so the reporter, controller, snapshotter, and server generate reports and CIS benchmarks.](https://docs.tigera.io/calico-cloud/compliance/enable-compliance.md)

##### [Schedule and run compliance reports](https://docs.tigera.io/calico-cloud/compliance/overview.md)

[Schedule and run Calico Cloud compliance reports against Kubernetes workloads using archived flow logs and audit logs, viewable in the Calico Cloud web console.](https://docs.tigera.io/calico-cloud/compliance/overview.md)

##### [Configure CIS benchmark reports](https://docs.tigera.io/calico-cloud/compliance/compliance-reports-cis.md)

[Configure CIS Kubernetes benchmark reports for clusters connected to Calico Cloud to assess node compliance and view results in the Calico Cloud web console.](https://docs.tigera.io/calico-cloud/compliance/compliance-reports-cis.md)

##### [Encrypt data in transit](https://docs.tigera.io/calico-cloud/compliance/encrypt-cluster-pod-traffic.md)

[Turn on WireGuard for clusters connected to Calico Cloud to encrypt inter-node pod and host-network traffic, with IPv4 and IPv6 support via FelixConfiguration.](https://docs.tigera.io/calico-cloud/compliance/encrypt-cluster-pod-traffic.md)

##### [Configure an outbound HTTP proxy](https://docs.tigera.io/calico-cloud/compliance/configure-http-proxy.md)

[Route outbound container traffic through an HTTP proxy on clusters connected to Calico Cloud by configuring the Installation custom resource via the Tigera Operator.](https://docs.tigera.io/calico-cloud/compliance/configure-http-proxy.md)
