免费一看一级欧美-免费一区二区三区免费视频-免费伊人-免费影片-99精品网-99精品小视频

課程目錄:Certified Kubernetes Security Specialist (CKS)培訓
4401 人關注
(78637/99817)
課程大綱:

   Certified Kubernetes Security Specialist (CKS)培訓

 

 

 

Introduction

Cluster Setup

Use Network security policies to restrict cluster level access
Use CIS benchmark to review the security configuration of Kubernetes components (etcd, kubelet, kubedns, kubeapi)
Properly set up Ingress objects with security control
Protect node metadata and endpoints
Minimize use of, and access to, GUI elements
Verify platform binaries before deploying
Cluster Hardening

Restrict access to Kubernetes API
Use Role Based Access Controls to minimize exposure
Exercise caution in using service accounts e.g. disable defaults, minimize permissions on newly created ones
Update Kubernetes frequently
System Hardening

Minimize host OS footprint (reduce attack surface)
Minimize IAM roles
Minimize external access to the network
Appropriately use kernel hardening tools such as AppArmor, seccomp
Minimize Microservice Vulnerabilities

Setup appropriate OS level security domains e.g. using PSP, OPA, security contexts
Manage kubernetes secrets
Use container runtime sandboxes in multi-tenant environments (e.g. gvisor, kata containers)
Implement pod to pod encryption by use of mTLS
Supply Chain Security

Minimize base image footprint
Secure your supply chain: whitelist allowed image registries, sign and validate images
Use static analysis of user workloads (e.g. kubernetes resources, docker files)
Scan images for known vulnerabilities
Monitoring, Logging and Runtime Security

Perform behavioral analytics of syscall process and file activities at the host and container level to detect malicious activities
Detect threats within physical infrastructure, apps, networks, data, users and workloads
Detect all phases of attack regardless where it occurs and how it spreads
Perform deep analytical investigation and identification of bad actors within environment
Ensure immutability of containers at runtime
Use Audit Logs to monitor access
Summary and Conclusion


主站蜘蛛池模板: 91麻豆高清国产在线播放 | 日韩在线影视 | 欧美高h| 国产午夜精品理论片在线 | 免费一区二区三区久久 | 蝴蝶传媒老版本 | 99er这里只有精品 | 韩国美女一级片 | h版肉动漫在线观看网站 | 国产精品久久久久国产精品 | 亚洲欧美在线观看 | 久久久小视频 | 色综合日本 | 天堂成人影院 | 精品视频日本 | 国产成人欧美一区二区三区的 | 国产精品视频久久久久久 | 日本高清免费在线视频 | 视频一区色眯眯视频在线 | 日产精品卡2卡三卡乱码网站 | 欧美高清在线观看 | 污视频网站免费在线观看 | 国产h视频 | 最近2019中文字幕最新 | 美女的隐私免费看无遮挡 | 日韩一中文字幕 | 99久久综合国产精品免费 | 久久精品国产免费一区 | 精品美女 | 一区二区在线视频 | 男人的天堂在线观看视频不卡 | 久久中文字幕一区二区三区 | 午夜精品久久久久久久四虎 | 狠狠激情五月综合婷婷俺 | www.99热| 亚洲国产精品激情在线观看 | 家庭教师 在线播放 | 成人一级视频 | 国产一区二区视频在线 | www.草逼| 亚洲精品国产手机 |