Главная
Study mode:
on
1
Introduction
2
Pod Security
3
PSP Security Emission
4
PSP Security Recommendations
5
Why use Kyverno
6
Kyverno Policy Library
7
Kyverno Validation Policy
8
Kyverno Autogen
9
Kyverno Enforce Policy
10
Kyverno Policy Report
11
Grandfather Dashboard
12
Mutate Policy
13
Conclusion
Description:
Explore effective strategies for maintaining cluster security in the absence of PodSecurityPolicy (PSP) in this 26-minute conference talk from KubeCon + CloudNativeCon Europe 2022. Learn how to leverage Kyverno, a Kubernetes-native admission controller, to set and validate security contexts for pods and pod controllers. Discover Kyverno's audit mode capabilities for identifying security violations without impacting existing clusters, and its Command Line Tool for executing policies in CI/CD pipelines. Follow along as Shuting Zhao demonstrates how to generate policy reports, enforce Pod security best practices, and improve overall cluster security posture using Kyverno's features, including policy libraries, validation policies, autogen functionality, and mutation policies.

Replacing PSPs - Keep Bad Pods out of Your Cluster Using Kyverno

CNCF [Cloud Native Computing Foundation]
Add to list
0:00 / 0:00