Linkerd case studies: meeting security requirements, reducing latency, and migrating from Istio
Guest post originally published on the Buoyant blog by William Morgan, CEO of Buoyant and Linkerd maintainer Adoption of the Linkerd service mesh continues to grow rapidly across industries and verticals. But why are organizations adopting…
The Linux Foundation, the nonprofit organization enabling mass innovation through open source, and Cloud Native Computing Foundation (CNCF), which builds sustainable ecosystems for cloud native software, announced a new certification, the Certified Kubernetes Security Specialist (CKS)…
Certified Kubernetes Security Specialist (CKS) Coming in November
This autumn The Linux Foundation and CNCF are excited to add a new Certified Kubernetes Security Specialist (CKS) to the growing list of Kubernetes certification programs. CKS will join the popular and highly respected Certified Kubernetes…
Getting started with container runtime security using Falco
Protect Kubernetes? As Kubernetes matures, security is becoming an important concern for both developers and operators. In this talk, Loris Degioanni will give an overview of cloud native security, discuss its different aspects, with particular focus…
Kubernetes security anatomy and the recently disclosed CVEs
Recently, 2 CVE disclosures (CVE-2020-8555, CVE-2020-8552) made by the community – the first affects the control plane and the latter is network security related that can be exploited to hijack host and other containers traffic. In…
Identifying Kubernetes Config Security Threats: Pods Running as Root
Guest post by Joe Pelletier, VP of Strategy at Fairwinds With different teams – development, security and operations – and prioritization of speedy delivery over perfect configuration, mistakes are inevitable. As teams work on building and…
Advancing image security and compliance through Container Image Encryption!
When it comes to container image security, you may have heard about image signing, which helps ensure the integrity and provenance of a container image. However, security gaps remain for protecting the confidentiality of the images…
SDxCentral: "Cloud native security remains a complex organism"
The cloud-native ecosystem continues to blossom as enterprises increasingly look toward taking greater advantage of their cloud infrastructure to speed up their internal operations and support for external services. However, that bloom has been impacted by…
Stay on top of ongoing Kubernetes security hygiene
Containers deployments in Kubernetes clusters create both familiar and new security challenges. Given the ephemeral nature of containers, the speed and agility goals of microservices architecture, a preliminary detection of potential risks and an early discovery…
Securing containers against attacks in multiple deployments and different geolocations requires integrating security into multiple points in the pipeline. Using manual processes to impose the policies is error-prone. Automation is a key to ensure the best…