Search results for: security


Admission controllers: one part of your Kubernetes security and governance toolkit

Posted on October 2, 2020

Admissions controllers play an important role in providing security and governance for Kubernetes. In this webinar, we will outline the Kubernetes Admission Controller architecture, and look in particular at the Validating Admission Controller function, along with…


With an eye toward standardization and security for its media brands, Verizon Media turned to cloud native

Posted on September 30, 2020

With brands ranging from Yahoo to HuffPost, TechCrunch, and many others, Verizon Media is focused on entertaining, informing, and connecting people.  But as the portfolio grew, connecting all of the brands’ infrastructure became a challenge. When…


How to enforce Kubernetes network security policies using OPA

Posted on September 9, 2020 | Mohammed Ahmed

Guest post originally published on the Magalix blog by Mohammed Ahmed This article is part of our Open Policy Agent (OPA) series, and assumes that you are familiar with Kubernetes and OPA. If you haven’t already done so,…


Enforce pod security policies in Kubernetes using OPA

Posted on August 25, 2020 | Mohamed Ahmed

Guest post originally published on the Magalix blog by Mohamed Ahmed In this article, we’re going to demonstrate how you can enforce the most fine-grained security policies using OPA. Notice that this article is part of a series…


SearchITOperations: “Kubernetes security defaults prompt upstream dilemma”

Posted on August 21, 2020

Kubernetes is now in mainstream enterprise use but still must support other audiences, from cloud service providers to high-performance computing, or HPC, shops. Tension among these varied interests surfaced this week in discussions about whether the…


Free EBook – Kubernetes Deployment and Security Patterns

Posted on August 19, 2020

Containers are now the de-facto go-to for application development and deployment. But as the enterprise adopts this technology, there are also questions – how are other companies deploying and using Kubernetes? What patterns are they using…


Modern Software Development Pipeline: A Security Reference Architecture

Posted on August 17, 2020

The modern automated software development and deployment process automates a lot of build, test, and deployment steps. Where and how should we embed security controls so that they adequately mitigate risks without affecting the velocity of…


Common Kubernetes config security threats

Posted on August 7, 2020

Guest post originally published on the Fairwinds blog by Joe Pelletier, VP of strategy at Fairwinds Securing workloads in Kubernetes is an important part of overall cluster security. The overall goal should be to ensure that…


ContainerJournal: "The CNCF etcd project reaches a significant milestone with completion of security audit"

Posted on August 5, 2020

This week, a third-party security audit was published on etcd, the open source distributed key-value store that plays a crucial role in scaling Kubernetes in the cloud. For etcd, this audit was important in multiple ways….


Open sourcing the etcd Security Audit

Posted on August 5, 2020

Guest post from Sahdev Zala and Xiang Li, maintainers for etcd We are proud to announce that the etcd team has successfully completed a 3rd party security audit for the etcd latest major release 3.4. The…