Application Containers & Microservices

Expand all | Collapse all

NSA CISA - Cybersecurity Technical Report - Kubernetes Hardening Guide

  • 1.  NSA CISA - Cybersecurity Technical Report - Kubernetes Hardening Guide

    Posted Aug 29, 2022 07:17:00 AM
      |   view attached
    Hi All,

    NSA and CISA just published The Cybersecurity Technical Report - Kubernetes Hardening Guide 

    This guide describes the security challenges of setting up and securing a Kubernetes cluster. It includes strategies for system administrators and developers of National Security Systems, helping them avoid common misconfigurations and implementing recommended hardening measures and mitigations when deploying Kubernetes.

    This guide details the following mitigations:
     Scan containers and Pods for vulnerabilities or misconfigurations.
     Run containers and Pods with the least privileges possible.
     Use network separation to control the amount of damage a compromise can cause.
     Use firewalls to limit unneeded network connectivity and use encryption to protect confidentiality.
     Use strong authentication and authorization to limit user and administrator access as well as to limit the attack surface.
     Capture and monitor audit logs so that administrators can be alerted to potential malicious activity.
     Periodically review all Kubernetes settings and use vulnerability scans to ensure risks are appropriately accounted for, and security patches are applied.


    ------------------------------
    Michael Roza CPA, CISA, CIA, MBA, Exec MBA
    ------------------------------


  • 2.  RE: NSA CISA - Cybersecurity Technical Report - Kubernetes Hardening Guide

    Posted Aug 30, 2022 08:47:00 AM
    Total Thanks



    Jorge Ivan Marmolejo Cardona
    "Don't be a know-it-all; be a learn-it-all."
    Auditor Interno ISO 27001 y Certificado en CSX Cybersecurity Fundamentals
    Celular 300 45 45 775

         







  • 3.  RE: NSA CISA - Cybersecurity Technical Report - Kubernetes Hardening Guide

    Posted Aug 31, 2022 08:14:00 AM
    Thanks for sharing. This is really helpful.

    ------------------------------
    Shaheen Abdul Jabbar
    Asst. Director
    Santander US
    ------------------------------



  • 4.  RE: NSA CISA - Cybersecurity Technical Report - Kubernetes Hardening Guide

    Posted Aug 31, 2022 09:00:00 AM