What You’ll Learn
  • Use Network security policies to restrict cluster level access
  • Use CIS benchmark to review the security configuration of Kubernetes components (etcd
  • kubelet
  • kubedns
  • kubeapi)
  • Properly set up Ingress objects with security control
  • Protect node metadata and endpoints
  • Minimize use of
  • and access to
  • GUI elements
  • Verify platform binaries before deploying
  • Restrict access to Kubernetes API
  • Use Role Based Access Controls to minimize exposure
  • Exercise caution in using service accounts e.g. disable defaults
  • minimize permissions on newly created ones
  • Update Kubernetes frequently
  • Minimize host OS footprint (reduce attack surface)
  • Minimize IAM roles
  • Minimize external access to the network
  • Appropriately use kernel hardening tools such as AppArmor
  • seccomp
  • Setup appropriate OS level security domains
  • Manage Kubernetes secrets
  • Use container runtime sandboxes in multi-tenant environments (e.g. gvisor
  • kata containers)
  • Implement pod to pod encryption by use of mTLS
  • Minimize base image footprint
  • Secure your supply chain: whitelist allowed registries
  • sign and validate images
  • Use static analysis of user workloads (Kubernetes resources
  • Docker files)
  • Scan images for known vulnerabilities
  • Perform behavioral analytics of syscall process and file activities at the host and container level to detect malicious activities
  • Detect threats within physical infrastructure
  • apps
  • networks
  • data
  • users and workloads
  • Detect all phases of attack regardless where it occurs and how it spreads
  • Perform deep analytical investigation and identification of bad actors within environment
  • Ensure immutability of containers at runtime
  • Use Audit Logs to monitor access

Requirements

  • Must know the basics of Kubernetes
  • Must have some hands on experience of Kubernetes
  • Ideally CKA or CKAD certified as that is also a prerequisite to take the CKS Exam

Description

Cluster Setup

  1. Use Network security policies to restrict cluster level access

  2. Use CIS benchmark to review the security configuration of Kubernetes components (etcd, kubelet, kubedns, kubeapi)

  3. Properly set up Ingress objects with security control

  4. Protect node metadata and endpoints

  5. Minimize use of, and access to, GUI elements

  6. Verify platform binaries before deploying


Cluster Hardening

  1. Restrict access to Kubernetes API

  2. Use Role Based Access Controls to minimize exposure

  3. Exercise caution in using service accounts e.g. disable defaults, minimize permissions on newly created ones

  4. Update Kubernetes frequently


System Hardening

  1. Minimize host OS footprint (reduce attack surface)

  2. Minimize IAM roles

  3. Minimize external access to the network

  4. Appropriately use kernel hardening tools such as AppArmor, seccomp


Minimize Microservice Vulnerabilities

  1. Setup appropriate OS level security domains

  2. Manage Kubernetes secrets

  3. Use container runtime sandboxes in multi-tenant environments (e.g. gvisor, kata containers)

  4. Implement pod to pod encryption by use of mTLS


Supply Chain Security

  1. Minimize base image footprint

  2. Secure your supply chain: whitelist allowed registries, sign and validate images

  3. Use static analysis of user workloads (e.g.Kubernetes resources, Docker files)

  4. Scan images for known vulnerabilities


Monitoring, Logging and Runtime Security

  1. Perform behavioral analytics of syscall process and file activities at the host and container level to detect malicious activities

  2. Detect threats within physical infrastructure, apps, networks, data, users and workloads

  3. Detect all phases of attack regardless where it occurs and how it spreads

  4. Perform deep analytical investigation and identification of bad actors within environment

  5. Ensure immutability of containers at runtime

  6. Use Audit Logs to monitor access

Who this course is for:

  • Anyone wishing to learn about Kubernetes Security or want to pass the CKS Exam
Courses

Course Includes:

  • Price: FREE
  • Enrolled: 11731 students
  • Language: English
  • Certificate: Yes

Recomended Courses

Robotics and ROS 2 - Learn by Doing! Manipulators
4.610465
(352 Rating)
FREE
Category
Development, Programming Languages, Robotics
  • English
  • 3236 Students
Robotics and ROS 2 - Learn by Doing! Manipulators
4.610465
(352 Rating)
FREE

Build and Control with your voice a Real Robot with ROS2

Enrolled
The Complete Java Course: From Basics to Advanced
4.3235292
(224 Rating)
FREE
Category
Development, Programming Languages, Java
  • English
  • 13344 Students
The Complete Java Course: From Basics to Advanced
4.3235292
(224 Rating)
FREE

Master Java from Basics to Advanced Topics: Java Basics | OOP | Multithreading | JDBC | Swing | JSP | Servlets

Enrolled
1500 New CompTIA IT Fundamentals ITF+ FC0-U61 Practice Exams
0
(0 Rating)
FREE

Master IT Fundamentals: Notation Systems, Data Types, Troubleshooting and More

Enrolled
[NEW] 1500 Master SQL: Interview Questions - Practice Tests
0
(0 Rating)
FREE

Comprehensive SQL Training: Joins, Functions, Transactions and More!

Enrolled
7 steps to entrepreneurship: A complete business plan (PRO)
4.6875
(8 Rating)
FREE

Do you have a business idea burning bright? Launch it like a pro, from early beginner to experienced CEO.

Enrolled
Project Management: Best Practices From 16 Years Consulting
4.2272725
(506 Rating)
FREE
Category
Business, Project Management
  • English
  • 19402 Students
Project Management: Best Practices From 16 Years Consulting
4.2272725
(506 Rating)
FREE

Learn How to Increase Your Job Productivity on Projects Without Certification! Use Unique Time Management Techniques.

Enrolled
Ms Azure Administrator Associate - AZ-104 Practice Exam
0
(0 Rating)
FREE

Ace The AZ-104 Certification With Real Exam Standard AZ 104 Microsoft Azure Administrator AZ104 Practice Test

Enrolled
The Complete Django Rest Framework Bootcamp 2024 [Latest]
4.7
(31 Rating)
FREE

Master Django Rest Framework in 2024: A Comprehensive Bootcamp for Building Powerful APIs with Python

Enrolled
Construye tu Propio Sistema POS con PHP 8 y MySQL
4.0
(10 Rating)
FREE
Category
  • Spanish
  • 3716 Students
Construye tu Propio Sistema POS con PHP 8 y MySQL
4.0
(10 Rating)
FREE

aprende el paso a paso de como se contruye un sistemas pos que lo puedes usar para venderlo o para tu uso personal

  • Spanish
  • 3716 Students
Enrolled

Previous Courses

AWS Certified Cloud Practitioner
4.357143
(146 Rating)
FREE
Category
IT & Software, IT Certifications, AWS Certified Cloud Practitioner
  • English
  • 17325 Students
AWS Certified Cloud Practitioner
4.357143
(146 Rating)
FREE

Master AWS Fundamentals: Start Your Cloud Journey with Confidence

Enrolled
Practical IoT Security and Penetration testing for Beginners
4.7083335
(24 Rating)
FREE
Category
  • English
  • 6527 Students
Practical IoT Security and Penetration testing for Beginners
4.7083335
(24 Rating)
FREE

Learn the Basics of IoT security and penetration testing of IoT devices with hands on course

  • English
  • 6527 Students
Enrolled
Python Web Development: Building Interactive Websites
4.5416665
(47 Rating)
FREE
Category
Development, Web Development
  • English
  • 7124 Students
Python Web Development: Building Interactive Websites
4.5416665
(47 Rating)
FREE

Python-Powered Web Interactions: Building Dynamic Websites with CSS and JavaScript

Enrolled
Information Security Fundamentals
4.423913
(1068 Rating)
FREE
Category
IT & Software, Network & Security, Information Security
  • English
  • 61750 Students
Information Security Fundamentals
4.423913
(1068 Rating)
FREE

The very basics of InfoSec

Enrolled
English Speaking Fluency: The Ultimate English Course
4.681818
(817 Rating)
FREE

English Speaking Skills: A Course in Using Action Words and Stories to Enhance Fluency

Enrolled
Ultimate ISTQB AI Testing Exam Certification 2024
5.0
(8 Rating)
FREE
Category
  • English
  • 85 Students
Ultimate ISTQB AI Testing Exam Certification 2024
5.0
(8 Rating)
FREE

Unleash Success with Our 6 Elite Practice Tests

  • English
  • 85 Students
Enrolled
FOCP Exam: Dominate with Practice & Expertise (2024 Edition)
5.0
(3 Rating)
FREE
Category
  • English
  • 68 Students
FOCP Exam: Dominate with Practice & Expertise (2024 Edition)
5.0
(3 Rating)
FREE

Master Cloud Cost Optimization & Launch Your FinOps Career with Exclusive Practice Tests & In-Depth Explanations

  • English
  • 68 Students
Enrolled
Comprehensive ISTQB Foundation Level Exam Certification Prep
0
(0 Rating)
FREE
Category
  • English
  • 60 Students
Comprehensive ISTQB Foundation Level Exam Certification Prep
0
(0 Rating)
FREE

Master the Essentials of Software Testing & Launch Your Career (2024 Update)

  • English
  • 60 Students
Enrolled

Total Number of 100% Off coupon added

Till Date We have added Total 2738 Free Coupon. Total Live Coupon: 621

Confuse which course 100% Off coupon live? Click Here

For More Update Join Our Telegram Channel.