Kubernetes Security, Part 1: Kubernetes Security Overview and Role Based Access Control (RBAC)

preview_player
Показать описание
In this video, we will explore Kubernetes Role Based Access Control (RBAC) to provide fine-grain access to users and service accounts. We will start off by taking a quick look at Kubernetes overall authentication and authorization and will discuss some security best practices. We will then dive deep into RBAC, its architecture, and its tenants (Subjects, (Cluster)Role, and (Cluster)Bindings). In the demos, we will also discuss how to provision client certificates and create config files for new users and how to leverage RBAC to give them access to Kubernetes resources. We will also learn how to impersonate users in Kubernetes, a useful technique to ensure users have the right access to Kubernetes resources. Finally, we will discuss ClusterRole aggregation and go over built-in Kubernetes ClusterRoles.

My Other Videos:

► Cilium Service Mesh
► Cilium Kubernetes CNI Provider: Part 4, IP Routing Modes (Direct and Encapsulated)
► Cilium Kubernetes CNI Provider, Part 3: Cluster Mesh
►Cilium Kubernetes CNI Provider, Part 2: Security Policies and Observability Leveraging Hubble
► What is VXLAN and How It is Used as an Overlay Network in Kubernetes?
► Managing Linux Log-ins, Users, and Machines in Active Directory (AD): Part 2- Join Linux Machines to AD:
► Managing Linux Log-ins, Users, and Machines in Active Directory (AD): Part 1- Setup AD:
► Sharing Resources between Windows and Linux:
► Kubernetes Kube-proxy Modes: iptables and ipvs, Deep Dive:
►Kubernetes: Configuration as Data: Environment Variables, ConfigMaps, and Secrets:
►Configuring and Managing Storage in Kubernetes:
► Istio Service Mesh – Securing Kubernetes Workloads:
► Istio Service Mesh – Intro
► Understanding Kubernetes Networking. Part 6: Calico Network Policies:
► Understanding Kubernetes Networking. Part 5: Intro to Kubernetes Network Policies:
► Understanding Kubernetes Networking. Part 4: Kubernetes Services:
► Understanding Kubernetes Networking Part 3: Calico Kubernetes CNI Provider in depth:
► Setup a Linux-Windows (Calico-based) Hybrid Kubernetes Cluster to Host .NET Containers:
► A Docker and Kubernetes tutorial for beginners:
A Docker and Kubernetes tutorial for beginners. - YouTube
► Setup a "Docker-less" Multi-node Kubernetes Cluster on Ubuntu Server:
► Detailed Windows Terminal, (WSL 2), Linux, Docker, and Kubernetes Install Guide on Windows 10:
Рекомендации по теме
Комментарии
Автор

You explain superbly. Pls continue, we want to lear from you. Lot of love.

AmitKumar-bhwi
Автор

I would really thank you for these high educative and qualitative videos... plz keep bringing them up with a deep content like always.. your videos are highly valuable, appreciated and distinguished through the web, I personally rarely find such professional and thorough explanations... many thanks and do not stop plz!!

AnasAlhamd
Автор

Another quality video, thank you so much for the upload!

rafiraf
Автор

An awesome explanation with diagrams! Could you please share all from scratch videos that cover Kubernetes

SrinivasaG-wm
Автор

Thanks for the video which is highly informative and very very useful. I have a question on Authentication plugins, does AWS / Azure uses OpenID Connect for Authentication? If yes, do you have a video which elaborates on how it works?

omega
Автор

Hey, just an idea, what about doing a video on istios ambient mesh

vimdiesel