Kubernetes Audit Log Gotchas: Challenges in Multi-Cloud Detection and Forensics
fwd:cloudsec via YouTube
Python, Prompt Engineering, Data Science — Build the Skills Employers Want Now
The Investment Banker Certification
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Explore a comprehensive conference talk that delves into the complexities and challenges of implementing Kubernetes audit logging across different cloud environments. Learn about the critical role of K8s audit logs in detecting security events and API server activities, while understanding the practical difficulties encountered when working with various Cloud Service Providers (CSPs). Discover the limitations of default logging policies, format inconsistencies between cloud vendors, and performance considerations that impact security monitoring. Gain valuable insights into potential blind spots in attack detection, rule triggering issues, and alternative logging sources that can enhance your security posture. Master the nuances of audit log management in both managed and unmanaged Kubernetes clusters, with specific focus on platforms like EKS, AKS, GKE, and OKE.
Syllabus
Kubernetes Audit Log Gotchas ~ Shay Berkovich
Taught by
fwd:cloudsec