Special offers now — see discounted courses.
day
:
hour
:
min
:
sec
See special offers
Securing Containers and Kubernetes Ecosystem

Securing Containers and Kubernetes Ecosystem

2h 6mIntermediate2020-09-25

Authors

Sam Sehgal

Sam Sehgal

Cloud and Application Security Leader

Course details

Containers have transformed the way applications are built, deployed, and managed. But it’s only a matter a time before a vulnerability or misconfiguration leads to a newsworthy security breach. Establishing security controls is essential to protect applications being deployed in orchestration systems like Kubernetes. This course explains how to secure containers and the Kubernetes ecosystem using a simple five-factor model. Instructor Sam Sehgal—a security strategist and architect —reviews the containers and Kubernetes technology architecture, the application development and deployment life cycle, as well as the attack surface and vectors. He then introduces his five-factor security model to protect Kubernetes and its components, and shows how to apply security controls to the design and code, images and registries, containers and hosts, applications, and Kubernetes clusters.

Topics include:
Defining containers
What is Kubernetes?
Attack surface and vectors
Five security factors
Securing containerized app code
Securing images
Securing hosts and the container working environment
Securing apps in Kubernetes
Securing Kubernetes clusters

Skills covered

KubernetesVirtualizationDevOps ToolsIncident ResponseDevOpsCybersecurityNetwork and System AdministrationOpen SourceOne-Off

Concepts

0. Introduction

  • 01 - Protect your containers and Kubernetes ecosystem
  • 02 - What you need to know

1. Demystifying Containers and Kubernetes

  • 03 - What are containers
  • 04 - Virtualization
  • 05 - Isolation and OS security features
  • 06 - Container runtime
  • 07 - What is Kubernetes
  • 08 - Kubernetes master node
  • 09 - Kubernetes worker node

2. Security Model for Containers and Kubernetes

  • 10 - Overall technology architecture
  • 11 - Container deployment and orchestration lifecycle
  • 12 - Attack surface and vectors
  • 13 - Five factors

3. Factor #1 - Securing Containerized Application Code

  • 14 - Secure design before code
  • 15 - Secure code

4. Factor #2 - Securing Images

  • 16 - Secure container images, part 1
  • 17 - Secure container images, part 2
  • 18 - Image registries
  • 19 - Image registry access control

5. Factor #3 - Securing Hosts and Container Working Environment

  • 20 - Container working environment
  • 21 - Container network security
  • 22 - Container port and interface security
  • 23 - Host OS protection

6. Factor #4 - Securing Applications in Kubernetes

  • 24 - Securing applications in Kubernetes
  • 25 - Access management
  • 26 - Authenticating users
  • 27 - Authenticating service accounts
  • 28 - Authorization
  • 29 - Admission control
  • 30 - Security context
  • 31 - Security policy
  • 32 - Kubernetes network security
  • 33 - Secrets management

7. Factor #5 - Securing Kubernetes Cluster

  • 34 - Cluster security goals
  • 35 - Securing API server traffic
  • 36 - Securing cluster components

8. Additional Security Considerations

  • 37 - Infrastructure security
  • 38 - Logging and monitoring

Conclusion

  • 39 - Next steps

About us

LyndaKade is a leading learning platform that helps people learn business, software, technology, and creative skills to achieve personal and professional goals.

Phone numberAparat ChannelTelegram SupportTelegram ChannelInstagram Page

All rights to this site belong to LyndaKade.

Terms of Service|Privacy Policy

نماد الکترونیک enamad در صورت اتصال با آی‌پی داخل کشور، نمایش داده خواهد شد.
logo-samandehi - لوگو ساماندهی
Zarinpal
Zibal