Securing and Automating Kubernetes with Kyverno

preview_player
Показать описание
Kyverno is a policy engine designed for Kubernetes. With Kyverno, policies are managed as Kubernetes resources and no new language is required to write policies. This allows using familiar tools such as kubectl, git, and kustomize to manage policies. Kyverno policies can validate, mutate, and generate Kubernetes resources. The Kyverno CLI can be used to test policies and validate resources as part of a CI/CD pipeline.

In this session Shuting Zhao and Jim Bugwadia, both of whom are Kyverno maintainers will provide an overview of Kyverno and describe how you can get started with using it.

✅ Introduction of Kyverno

✅ What are PodSecurityPolicies?

✅ PodSecurityPolicies VS Kyverno ?

✅ Installing Kyverno?

✅ How to Apply PodSecurityPolicies policies?

✅ Writing Kyverno policies?

✅ Generating policies?

✅ Loads More?

------------------------------------------------------------------------------------------------------------------------
Follow Kyverno for more updates:
GitHub:
Website:
------------------------------------------------------------------------------------------------------------------------

------------------------------------------------------------------------------------------------------------------------
PolicyReporter is a tool to send information from PolicyReports to different targets like Grafana, Loki, Elasticsearch or Slack.

Thanks to Frank Jogeleit
------------------------------------------------------------------------------------------------------------------------

------------------------------------------------------------------------------------------------------------------------
Bad Pods: Kubernetes Pod Privilege Escalation:

A collection of manifests that create pods with different elevated privileges. Quickly demonstrate the impact of allowing security sensitive pod attributes like hostNetwork, hostPID, hostPath, hostIPC, and privileged.
------------------------------------------------------------------------------------------------------------------------

🚀 Thanks for watching... Keep Track of Cloud Native with Cloud Native Islamabad.
-------------------------------------------------------------------------------------------------------------------------
Here's we host our Cloud Native Webinar's Thanks to CNCF:
-------------------------------------------------------------------------------------------------------------------------

#PodSecurityPolicies #Kyverno #PolicyAsCode
Рекомендации по теме