For most Kubernetes deployments, there are three major categories of threat vectors. It's important to understand where these fall within your threat model, since thinking about who might attack your system, and how they would do it, will help prioritize your security efforts.
The information presented in this document is for technical audiences who are interested inprioritizing their Kubernetes security effortsto protect against three major categories of threat vectors:
Preventing external attackers from gaining access and elevating privileges
Containing attacks on compromised containers
Placing restrictions on what users can do to block the malicious user
Considering these threats, this document examines the possible lines of defense from a security perspective and technical security measures are offered.
Are you attending KubeCon?
Be sure to register for the KubeSec co-located event to hear from end-users like Starbucks and Tinder who will share their experiences / best practices with Kubernetes security. Review the event, agenda, and speakers on ourwebsite.
Reply to this email if you are interested in attending KubeSec at a discounted rate.
Aqua Security, 800 District Avenue, Suite 310, Burlington, MA, 01803, United States, (781) 362-4787
No comments:
Post a Comment