Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

CNCF [Cloud Native Computing Foundation]

Strengthening Kubernetes Trust - SIG Auth's Latest Security Enhancements

CNCF [Cloud Native Computing Foundation] via YouTube

Overview

Coursera Spring Sale
40% Off Coursera Plus Annual!
Grab it
Explore the latest security enhancements from Kubernetes SIG Auth in this 32-minute conference talk from CNCF's KubeCon + CloudNativeCon. Learn about critical improvements to Kubernetes' authentication and authorization foundations, including secure image pulls using ephemeral ServiceAccount tokens that reduce dependency on long-lived secrets and node-scoped credentials. Discover the new mechanism for provisioning X.509 certificates directly to pods via the kubelet, enabling robust mTLS authentication and secure service-to-service communication. Understand how kubelet serving certificate validation is being hardened to prevent node impersonation attacks, particularly in dynamic and on-premises environments. Examine Dynamic Resource Allocation (DRA) support for privileged admin access to devices in use, facilitating secure diagnostics while maintaining strong isolation. Review current and future authorization improvements, including enhanced policy controls for image pull operations, and gain insights into how these comprehensive security efforts are strengthening the overall trust model across Kubernetes deployments.

Syllabus

Strengthening Kubernetes Trust: SIG Auth's Latest Se... Anish R, Mo K, Stanislav L, Rita Z & Peter E

Taught by

CNCF [Cloud Native Computing Foundation]

Reviews

Start your review of Strengthening Kubernetes Trust - SIG Auth's Latest Security Enhancements

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.