filmov
tv
Automating Openshift Compliance Scanning

Показать описание
Speakers: Jakub Hrozek & Juan Antonio Osorio Robles
Checking for security compliance is overall hard. Doing so for a cluster of hundreds of machines is even worse.
Compliance is hard and tedious work, especially on a cluster scale. There are many checkboxes to tick; the controls in the standards are not easy to interpret; and more so, compliance needs to be reached, but also maintained and continuously monitored.
We aimed to address this issue by building the compliance-operator.
This project aims to aid OpenShift deployers to verify, monitor, and ultimately achieve their compliance targets in an automated fashion by checking both the OpenShift configuration and the Linux nodes that form that cluster.
Checking for security compliance is overall hard. Doing so for a cluster of hundreds of machines is even worse.
Compliance is hard and tedious work, especially on a cluster scale. There are many checkboxes to tick; the controls in the standards are not easy to interpret; and more so, compliance needs to be reached, but also maintained and continuously monitored.
We aimed to address this issue by building the compliance-operator.
This project aims to aid OpenShift deployers to verify, monitor, and ultimately achieve their compliance targets in an automated fashion by checking both the OpenShift configuration and the Linux nodes that form that cluster.
Automating Openshift Compliance Scanning
DevConf US 2020: Automating OpenShift compliance scanning
OpenSCAP Security Scans on OpenShift
Using Openshift-GitOps to deploy Openshift-Compliance Operator and run a Security Scan
Automated security and compliance
Ask an OpenShift Admin (Ep 40): Compliance and security
Automate DevSecOps Compliance with Red Hat
Ask an OpenShift Admin (Ep 40): Compliance and security
Automating Governance, Risk and Compliance John Willis
Red Hat automated security and compliance solution for telecommunications service providers
Automating Security and Compliance Demo
Automating security and compliance for hybrid environments
DevOps Security, Monitoring and Compliance with OpenShift and Sysdig
OpenShift Commons .Gov SIG #1: FISMA Compliance for OCP
Solving Kubernetes Security Challenges Using Red Hat OpenShift and Sysdig
DevSecOps is the Way (S1E2): Compliance
Compliance as Code: Automate Compliance Using Open Source Technology
OpenShift Commons Briefing Compliance as Code with Keith Basil (Red Hat)
Public Sector on Air: CoreOS Scanning
OCB: Compliance with Containers and Cloud: Sysdig & Red Hat OpenShift
Introduction to RHACS, Part IV — Compliance Operator
Red Hat Advanced Cluster Management and the Compliance Operator
Public Sector on Air: Cybersecurity, Compliance, & Automation w/ Justin Nemmers (MindPoint Group...
RedHat OpenShift container security Operator Demo
Комментарии