Skip to main content

Kubernetes Hardening Guide


Geoff Burke
Forum|alt.badge.img+22

The NSA and CISA just released a Kubernetes Hardening guide. I have attached it here.

 

cheers

 

 

5 comments

Geoff Burke
Forum|alt.badge.img+22
  • Author
  • Veeam Legend, Veeam Vanguard
  • 1313 comments
  • August 5, 2021

I seem to have posted this as a question and not content but don't see where I can change that :). 


Chris.Childerhose
Forum|alt.badge.img+21
  • Veeam Legend, Veeam Vanguard
  • 8402 comments
  • August 5, 2021

Saved for future reading when I can get in to Kubernetes. :smiley:


MicoolPaul
Forum|alt.badge.img+23
  • 2358 comments
  • August 5, 2021

I also strongly recommend looking into Ian Coldwater for insights around Kubernetes security hardening, they’re extremely well known and respected within the community (Ian is the Kubernetes SIG Co-Chair) and the infosec community was widely surprised that Ian wasn’t consulted in the production of that document you referenced @Geoff Burke . 🙂


Geoff Burke
Forum|alt.badge.img+22
  • Author
  • Veeam Legend, Veeam Vanguard
  • 1313 comments
  • August 6, 2021
MicoolPaul wrote:

I also strongly recommend looking into Ian Coldwater for insights around Kubernetes security hardening, they’re extremely well known and respected within the community (Ian is the Kubernetes SIG Co-Chair) and the infosec community was widely surprised that Ian wasn’t consulted in the production of that document you referenced @Geoff Burke . 🙂

Interesting. let me check if he worked on the CKS or not, if not this could be some personality conflict thing :) 


Forum|alt.badge.img+4
  • Experienced User
  • 576 comments
  • August 6, 2021

@Geoff Burke : It is surely a good to have Hardening while using Kubernetes. Downloaded this guide for future !


Comment