---
title: "Compliance and security"
description: "Generate compliance reports and encrypt in-cluster traffic for clusters connected to Calico Cloud, with archived flow logs, audit logs, CIS benchmarks, and WireGuard."
product: "Calico Cloud"
version: "v20.4.0"
section: "Compliance and security"
canonical_url: "https://docs.tigera.io/calico-cloud/next/compliance/"
---

# Compliance and security

Get reports on Kubernetes workloads and environments for regulatory compliance. Encrypt traffic in your cluster with WireGuard.

##### [Enable compliance reports](https://docs.tigera.io/calico-cloud/compliance/enable-compliance)

[Activate compliance reporting components on clusters connected to Calico Cloud so the reporter, controller, snapshotter, and server generate reports and CIS benchmarks.](https://docs.tigera.io/calico-cloud/compliance/enable-compliance)

##### [Schedule and run compliance reports](https://docs.tigera.io/calico-cloud/compliance/overview)

[Schedule and run Calico Cloud compliance reports against Kubernetes workloads using archived flow logs and audit logs, viewable in the Calico Cloud web console.](https://docs.tigera.io/calico-cloud/compliance/overview)

##### [Configure CIS benchmark reports](https://docs.tigera.io/calico-cloud/compliance/compliance-reports-cis)

[Configure CIS Kubernetes benchmark reports for clusters connected to Calico Cloud to assess node compliance and view results in the Calico Cloud web console.](https://docs.tigera.io/calico-cloud/compliance/compliance-reports-cis)

##### [Encrypt data in transit](https://docs.tigera.io/calico-cloud/compliance/encrypt-cluster-pod-traffic)

[Turn on WireGuard for clusters connected to Calico Cloud to encrypt inter-node pod and host-network traffic, with IPv4 and IPv6 support via FelixConfiguration.](https://docs.tigera.io/calico-cloud/compliance/encrypt-cluster-pod-traffic)

##### [Configure an outbound HTTP proxy](https://docs.tigera.io/calico-cloud/compliance/configure-http-proxy)

[Route outbound container traffic through an HTTP proxy on clusters connected to Calico Cloud by configuring the Installation custom resource via the Tigera Operator.](https://docs.tigera.io/calico-cloud/compliance/configure-http-proxy)
