Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

CNCF [Cloud Native Computing Foundation]

Securing Self-Hosted GitHub Actions with Kubernetes and Actions-Runner-Controller

CNCF [Cloud Native Computing Foundation] via YouTube

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
This course covers security choices for deploying self-hosted GitHub Actions runners on Kubernetes with Actions-Runner-Controller. It addresses cluster isolation, least-privilege permissions, and supply chain security for runner images and the software they build.

Syllabus

Intro
Where are we headed?
I have a bias!
What's GitHub Actions?
Why self-hosted?
Unique security challenges
types of Actions
3 types of security concerns
2- Do you trust your neighbors?
Docker-in-Docker is risky, but...
Rootless?
Firecracker
Runner with Kubernetes jobs
3- Right-sizing your runners
Controller authorizations
Multi-tenant in practice
Recommendations
Secure runner images
Examples to get started!
You may have forgotten
Logging is easy to overlook
Sharing (mounts) isn't caring!
Building and deploying
Sharing is caring!
in)conclusions
Questions!

Taught by

CNCF [Cloud Native Computing Foundation]

Reviews

Start your review of Securing Self-Hosted GitHub Actions with Kubernetes and Actions-Runner-Controller

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.