Admission controllers: one part of your Kubernetes security and governance toolkit
Admissions controllers play an important role in providing security and governance for Kubernetes. In this webinar, we will outline the Kubernetes Admission Controller architecture, and look in particular at the Validating Admission Controller function, along with…
With brands ranging from Yahoo to HuffPost, TechCrunch, and many others, Verizon Media is focused on entertaining, informing, and connecting people. But as the portfolio grew, connecting all of the brands’ infrastructure became a challenge. When…
How to enforce Kubernetes network security policies using OPA
Guest post originally published on the Magalix blog by Mohammed Ahmed This article is part of our Open Policy Agent (OPA) series, and assumes that you are familiar with Kubernetes and OPA. If you haven’t already done so,…
Enforce pod security policies in Kubernetes using OPA
Guest post originally published on the Magalix blog by Mohamed Ahmed In this article, we’re going to demonstrate how you can enforce the most fine-grained security policies using OPA. Notice that this article is part of a series…
SearchITOperations: “Kubernetes security defaults prompt upstream dilemma”
Kubernetes is now in mainstream enterprise use but still must support other audiences, from cloud service providers to high-performance computing, or HPC, shops. Tension among these varied interests surfaced this week in discussions about whether the…
Free EBook – Kubernetes Deployment and Security Patterns
Containers are now the de-facto go-to for application development and deployment. But as the enterprise adopts this technology, there are also questions – how are other companies deploying and using Kubernetes? What patterns are they using…
Modern Software Development Pipeline: A Security Reference Architecture
The modern automated software development and deployment process automates a lot of build, test, and deployment steps. Where and how should we embed security controls so that they adequately mitigate risks without affecting the velocity of…
Common Kubernetes config security threats
Guest post originally published on the Fairwinds blog by Joe Pelletier, VP of strategy at Fairwinds Securing workloads in Kubernetes is an important part of overall cluster security. The overall goal should be to ensure that…
This week, a third-party security audit was published on etcd, the open source distributed key-value store that plays a crucial role in scaling Kubernetes in the cloud. For etcd, this audit was important in multiple ways….
Open sourcing the etcd Security Audit
Guest post from Sahdev Zala and Xiang Li, maintainers for etcd We are proud to announce that the etcd team has successfully completed a 3rd party security audit for the etcd latest major release 3.4. The…